Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=125093.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 25, 2026
Valid Until
August 23, 2026
59 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F4:98:6C:C5:0D:C9:AF:BE:80:CC:0D:B4:34:34:BF:A0:7A:D0:AC:1A:14:A7:70:E4:71:0C:75:7B:56:8B:B6:80
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
roprofile.com
*.roprofile.com
125093.co
*.125093.co
21516.co
*.21516.co
286725.lol
*.286725.lol
523560.lol
*.523560.lol
54673.sbs
*.54673.sbs
67835.casa
*.67835.casa
776284.lol
*.776284.lol
88295.my
*.88295.my
901379.cc
*.901379.cc
91498.blog
*.91498.blog
aswaaki.com
*.aswaaki.com
aymmo.com
*.aymmo.com
brcxra.com
*.brcxra.com
e5418285.vip
*.e5418285.vip
evlora.shop
*.evlora.shop
hxj001.com
*.hxj001.com
iahkui.cyou
*.iahkui.cyou
iemmw.town
*.iemmw.town
ieosales.com
*.ieosales.com
innerbeacon.info
*.innerbeacon.info
iwksa.co
*.iwksa.co
janetwhite.com
*.janetwhite.com
jorbex.sbs
*.jorbex.sbs
lasmtinute.com
*.lasmtinute.com
legendadventure101.info
*.legendadventure101.info
ljk9jg.cyou
*.ljk9jg.cyou
luxuryathcay.com
*.luxuryathcay.com
m25m.cyou
*.m25m.cyou
omabeautybar.com
*.omabeautybar.com
premiergossip.live
*.premiergossip.live
privatefish.org
*.privatefish.org
r3v4bk.cyou
*.r3v4bk.cyou
sexyqueen.shop
*.sexyqueen.shop
shareholders.co.za
*.shareholders.co.za
sililarweb.com
*.sililarweb.com
steampowedred.com
*.steampowedred.com
stylebonds.beauty
*.stylebonds.beauty
succuri.com
*.succuri.com
swindsor.com
*.swindsor.com
traelexinsurance.com
*.traelexinsurance.com
xn--1qq214e.com
*.xn--1qq214e.com
ystrikingly.com
*.ystrikingly.com
yt58.my
*.yt58.my
zvhvxi.cyou
*.zvhvxi.cyou
Other domains in certificate