Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=corporatecricket.co.in
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 13, 2026
Valid Until
April 13, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
14:31:80:D8:A6:14:62:32:7A:2C:76:92:FC:57:F8:82:FA:FF:59:E3:39:72:31:FE:03:BA:9E:05:54:97:DE:3A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 4 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
100 domains
samtopfixer.com
cbd.365.stream
usdh.365.stream
lastminute-auth.aadish.dev
railway.acegadgets.biz
agentespv.cl
alkateknoloji.com
www.bonnapizza.app.br
www.atxdevs.com
cupom.barbeariadamooca.com
basyapimuhendislikmimarlik.com
blendpixel.com
www.blendpixel.com
byefrain.com
www.bytecodex.co.uk
cashflosense.com
www.cashflosense.com
censorimage.com
marketplace.chillbear.club
www.clinicone.me
corporatecricket.co.in
shuleni.co.ke
www.coders-x.com
blog.imgenerasi.com.my
dashboard.dafa.ly
diegocoy.com
edusyariah.me
egttecnologia.com.br
www.egttecnologia.com.br
featapps.com
www.featapps.com
ferapaper.com
gestao.finalfit.com.br
fyrma.club
www.fyrma.club
deneme.galerimbenim.com
3dbowling.games235.com
www.goatchallenge2026.com
haircrown.in
athens.handbook.gr
www.hkrcorp.org
increment-works.com
inner-journey.cc
app.intrcity.com
allnatural.inventas.com.ar
grupong.inventas.com.ar
khanhthao.io.vn
mpo444.it.com
test.jardin.coop
jeremyworld.org
www.jeremyworld.org
khusnan.top
leex.world
legendtsa.org
www.legislativa.com.br
levinswitches.in
ehime.linx.live
mie.linx.live
www.lunge.pro
app.makeit.buzz
geoplex.masonlab.cc
momaind.com
mommyfest.com.co
links.multibhashi.com
mustafakanmaz.com
www.nairamax.com
glntech.net.ar
now-simply-right.com
pj-221.com
plain-and-honest.com
ww2.pledje.com
www.pledje.com
www.prizeapp.win
www.rootedkings.com
sarathiphysioworld.com
get.shortedfilms.com
app.shuruthisdental.com
sickdevs.com
auth.sleepytale.com
speedcubeapp.com
main.sunflower-of-courage.com
cv.suresh.app
www.tabelasomos.com.br
tathastugreens.in
temporalanalysis.com
app.terna.net
staging.tnsj.pt
dev.tobanzero.com
admin.travelcab.net
unitedstarlogistics.com
www.unitedstarlogistics.com
vapcoegypt.com
carrefour-admin-front.wifirst.net
links.wink.travel
staging-corporate.wink.travel
staging-links.wink.travel
auth.staging.wondercraft.ai
xn----7sbqaleiithijlf1ab8e.xn--p1ai
xn--moire-csa.com
xn--oh1bkyv62a.com
Other domains in certificate