Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cosmosaga973.top
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:82:1A:9F:40:FE:35:14:AD:B0:9A:B1:B0:86:FB:6F:A1:A2:57:BB:63:2A:A3:EF:F8:8A:82:D9:23:3D:82:3B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
retirepla.net
*.retirepla.net
*.ww25.retirepla.net
*.ww38.retirepla.net
12626.blog
*.12626.blog
28w5w8o.cc
*.28w5w8o.cc
31489.one
*.31489.one
60179.top
*.60179.top
8oa8h.com
*.8oa8h.com
99986.my
*.99986.my
advanceamplifyydiamond.info
*.advanceamplifyydiamond.info
*.qrq2bp.advanceamplifyydiamond.info
blazeempire245.shop
*.blazeempire245.shop
cosmosaga973.top
*.cosmosaga973.top
decenttaoy.world
*.decenttaoy.world
deng-yingzei4chi.top
*.deng-yingzei4chi.top
dental-marketing-7j0.click
*.dental-marketing-7j0.click
dental-marketing-faz8g.click
*.dental-marketing-faz8g.click
dewagacor89asik.cfd
*.dewagacor89asik.cfd
digitalvoiceformhub.info
*.digitalvoiceformhub.info
dijiridoo.com
*.dijiridoo.com
directvoiceformteam.info
*.directvoiceformteam.info
discoverstmbrands.com
*.discoverstmbrands.com
discovertouchstormgroup.info
*.discovertouchstormgroup.info
efywj.cn
*.efywj.cn
fitness-trainer-breeze-368.sbs
*.fitness-trainer-breeze-368.sbs
foundamplifyybronze.info
*.foundamplifyybronze.info
foundamplifyydiamond.info
*.foundamplifyydiamond.info
foundamplifyygold.info
*.foundamplifyygold.info
getalong.autos
*.getalong.autos
hiltonhoors.com
*.hiltonhoors.com
*.ww25.hiltonhoors.com
*.ww38.hiltonhoors.com
iconicdealsonline.co
*.iconicdealsonline.co
lifeisgood.makeup
*.lifeisgood.makeup
long-acting-anti-vegf-4u.click
*.long-acting-anti-vegf-4u.click
noonccb.shop
*.noonccb.shop
nova-solarcore.quest
*.nova-solarcore.quest
*.ikh8q0.photographysitebuilder.com
photographysitebuilder.com
*.photographysitebuilder.com
prostate-cancer-treatment-bq09.click
*.prostate-cancer-treatment-bq09.click
shiftamplifyygem.info
*.shiftamplifyygem.info
*.rdp.sitebuilderlabs.com
sitebuilderlabs.com
*.sitebuilderlabs.com
*.staging.sitebuilderlabs.com
sparkamplifyygold.info
*.sparkamplifyygold.info
sparkamplifyysilver.info
*.sparkamplifyysilver.info
z2gk78.top
*.z2gk78.top
Other domains in certificate