Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ruf.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 01, 2026
Valid Until
May 30, 2026
33 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F0:25:C7:6C:38:8C:28:8B:50:24:9B:2A:1A:E3:94:A1:0B:09:CF:BF:98:3F:88:CD:09:42:B6:2F:D3:E2:82:F8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ruf.net
*.ruf.net
0b2trh.top
*.0b2trh.top
356x.info
*.356x.info
3r1eg6.top
*.3r1eg6.top
3y69.cc
*.3y69.cc
3zntkehywyaguay.cc
*.3zntkehywyaguay.cc
548tr4.top
*.548tr4.top
585285.cc
*.585285.cc
75214.top
*.75214.top
777rio.info
*.777rio.info
77881.pictures
*.77881.pictures
78brl.info
*.78brl.info
78brl.org
*.78brl.org
790423.com
*.790423.com
9b3010.co
*.9b3010.co
aiadvisoryboards.com
*.aiadvisoryboards.com
amo777pg.vip
*.amo777pg.vip
anitrader.com
*.anitrader.com
apiampanakota.org
*.apiampanakota.org
apikabkaranganyar.org
*.apikabkaranganyar.org
apitasikmalaya.org
*.apitasikmalaya.org
apiwonosobo.org
*.apiwonosobo.org
astraagentic.com
*.astraagentic.com
attorney.party
*.attorney.party
bluewhale.finance
*.bluewhale.finance
burrobet.info
*.burrobet.info
buymodafinilonlinefast.com
*.buymodafinilonlinefast.com
cash4giftcards.com
*.cash4giftcards.com
clubebr.info
*.clubebr.info
cnzaf.gdn
*.cnzaf.gdn
copymilionario.net
*.copymilionario.net
crypier.com
*.crypier.com
crypion.com
*.crypion.com
d6a6b59d7bbd1088.com
*.d6a6b59d7bbd1088.com
marriage.it.com
*.marriage.it.com
portalcatilize.com
*.portalcatilize.com
ppp123.xyz
*.ppp123.xyz
*.ww12.ppp123.xyz
*.ww25.ppp123.xyz
qm778bb99889.it.com
*.qm778bb99889.it.com
rawan.live
*.rawan.live
releasethedocuments.com
*.releasethedocuments.com
remont-gfruit.com
*.remont-gfruit.com
remontpeterburga.com
*.remontpeterburga.com
rpg.rocks
*.rpg.rocks
rrrr777.org
*.rrrr777.org
Other domains in certificate