Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=singawin.vip
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 24, 2026
Valid Until
August 22, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
28:3D:7A:CB:7C:DA:D6:1E:70:CD:0C:7C:F7:61:77:E3:8F:3E:7F:E4:87:A3:A5:43:29:D1:95:22:F0:38:0A:42
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
imvavatars.com
*.imvavatars.com
37099.one
*.37099.one
42751546.top
*.42751546.top
49mht.cc
*.49mht.cc
6076406.cc
*.6076406.cc
66f.my
*.66f.my
696ag1a.vip
*.696ag1a.vip
72605.center
*.72605.center
76259.pro
*.76259.pro
86793135.top
*.86793135.top
9553jwm.top
*.9553jwm.top
9s915c.qpon
*.9s915c.qpon
a33pg.com
*.a33pg.com
adtech.cloud
*.adtech.cloud
afrahglobalfoundation.com
*.afrahglobalfoundation.com
alipay-pay.cfd
*.alipay-pay.cfd
b-l-u-e.com
*.b-l-u-e.com
c89h.shop
*.c89h.shop
cari-iklan4d.homes
*.cari-iklan4d.homes
copilo.io
*.copilo.io
cyberzone946.info
*.cyberzone946.info
developguidance24.info
*.developguidance24.info
dundalkgaragedoorsolutions.xyz
*.dundalkgaragedoorsolutions.xyz
e2pg2x.qpon
*.e2pg2x.qpon
elizabethedmondson.com
*.elizabethedmondson.com
erzi.me
*.erzi.me
ewrn4t.cyou
*.ewrn4t.cyou
*.4jd.fb119.com
*.bzf1nn.fb119.com
fb119.com
*.fb119.com
*.vdd.fb119.com
*.wap.fb119.com
g0z2p5.cyou
*.g0z2p5.cyou
hh20023.cc
*.hh20023.cc
innercirclewave.info
*.innercirclewave.info
iqdoct.com
*.iqdoct.com
jamstack.pro
*.jamstack.pro
kingclub78988v2.xyz
*.kingclub78988v2.xyz
kitespot.gr
*.kitespot.gr
kphhh.bet
*.kphhh.bet
lgodewaqj.com
*.lgodewaqj.com
liberalsite.com
*.liberalsite.com
m80e.cyou
*.m80e.cyou
mysteryodyssey577.info
*.mysteryodyssey577.info
*.32.singawin.vip
singawin.vip
*.singawin.vip
*.sitemaps.singawin.vip
Other domains in certificate