Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ngxwj.bid
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
48:91:C4:36:A4:69:11:F0:24:6D:D7:D1:97:50:3E:EF:1A:30:70:80:3D:BB:17:C5:94:D4:77:46:3A:79:40:22
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
pdstudios.com
*.pdstudios.com
menclothing.net
*.menclothing.net
mqpyjtf.cyou
*.mqpyjtf.cyou
naf37.top
*.naf37.top
newindustry.it
*.newindustry.it
nextwinningacquisition.com
*.nextwinningacquisition.com
ngxwj.bid
*.ngxwj.bid
play-pulse-hollow.xyz
*.play-pulse-hollow.xyz
propaga.it
*.propaga.it
pruniform.com
*.pruniform.com
raulbova.it
*.raulbova.it
risaie.it
*.risaie.it
riverstreet.it
*.riverstreet.it
rswzyq.xyz
*.rswzyq.xyz
schoolofimage.com
*.schoolofimage.com
seoebook.it
*.seoebook.it
speedwell.it
*.speedwell.it
strigno.it
*.strigno.it
t92kr1in.com
*.t92kr1in.com
thecoldemail.us
*.thecoldemail.us
transpallet.it
*.transpallet.it
travel2ireland.com
*.travel2ireland.com
travelartisticimpressions.live
*.travelartisticimpressions.live
trending.it
*.trending.it
trieraroniiosdaluddy.cyou
*.trieraroniiosdaluddy.cyou
u0jfbe1nf5q.cc
*.u0jfbe1nf5q.cc
udeur.it
*.udeur.it
ultimas.it
*.ultimas.it
universityhotel.it
*.universityhotel.it
urchurch.org
*.urchurch.org
urduvista.com
*.urduvista.com
valec.it
*.valec.it
vans-mx.com
*.vans-mx.com
verado.it
*.verado.it
vinifranciacorta.it
*.vinifranciacorta.it
viza.it
*.viza.it
vnsarn.cc
*.vnsarn.cc
volna-casino.xyz
*.volna-casino.xyz
west.it
*.west.it
wordsworth.it
*.wordsworth.it
wxgwu.pro
*.wxgwu.pro
x-box.net
*.x-box.net
xeros.it
*.xeros.it
yaf79.top
*.yaf79.top
youmiss.it
*.youmiss.it
Other domains in certificate