Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=zhibo8.live
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8F:C7:67:0F:38:2D:EF:80:D1:14:F5:93:B3:BC:29:40:12:50:B2:74:61:EF:11:FB:E0:83:01:6A:AB:F5:5F:D3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
rtoys.com
*.rtoys.com
1winmobile.in
*.1winmobile.in
*.sync.1winmobile.in
aanzet.com
*.aanzet.com
*.beta.aanzet.com
*.demo.aanzet.com
*.hostmaster.aanzet.com
*.mail.aanzet.com
*.random.aanzet.com
*.securemail.aanzet.com
*.wordpress.aanzet.com
*.ww25.aanzet.com
*.ww38.aanzet.com
bnskin.com
*.bnskin.com
*.pix.bnskin.com
canapas.it
*.canapas.it
*.hzds.canapas.it
*.zhum.canapas.it
continentals.com
*.continentals.com
*.royal.continentals.com
*.app.londonshortlet.com
*.com.londonshortlet.com
londonshortlet.com
*.londonshortlet.com
*.ftp.nanohunamik.com
nanohunamik.com
*.nanohunamik.com
*.blog.pawnmycarforcash.com
*.d7790707-a09f-4963-837e-ec26d7cc5046.pawnmycarforcash.com
*.git.pawnmycarforcash.com
pawnmycarforcash.com
*.pawnmycarforcash.com
*.files.premierhygiene.com
premierhygiene.com
*.premierhygiene.com
relaxingvacationzone.xyz
*.relaxingvacationzone.xyz
reparaciondecredito.com
*.reparaciondecredito.com
resultadosdelloto.com
*.resultadosdelloto.com
rockbooks.site
*.rockbooks.site
rondleiding.com
*.rondleiding.com
sassytraveler.com
*.sassytraveler.com
scamadvisers.com
*.scamadvisers.com
secularceremonies.com
*.secularceremonies.com
serenegardenjourneys.live
*.serenegardenjourneys.live
sexaraby.com
*.sexaraby.com
*.com.southdakotaseo.com
southdakotaseo.com
*.southdakotaseo.com
*.api.textsfree.com
*.app.textsfree.com
*.assets.textsfree.com
*.dev.textsfree.com
*.lms.textsfree.com
textsfree.com
*.textsfree.com
*.ww16.textsfree.com
theatantic.com
*.theatantic.com
*.ww.theatantic.com
*.cpanel.truthtracks.com
truthtracks.com
*.truthtracks.com
*.search.upstateauctions.com
*.thor.upstateauctions.com
upstateauctions.com
*.upstateauctions.com
*.users.upstateauctions.com
*.youtube.upstateauctions.com
vietmeme.com
*.vietmeme.com
*.ww.zhibo8.live
*.wwww.zhibo8.live
zhibo8.live
*.zhibo8.live
Other domains in certificate