Open
Cached
·
2h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=zuka999.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 17, 2026
Valid Until
August 15, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:86:58:1E:B0:74:76:FC:66:11:4D:30:8B:95:99:B8:97:7E:18:C5:EF:94:2E:7D:C4:C0:F0:86:28:EA:72:DD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
schnitzerracing.com
*.schnitzerracing.com
1178dmy301.top
*.1178dmy301.top
29126.my
*.29126.my
53778.locker
*.53778.locker
682324.blog
*.682324.blog
7766win.xyz
*.7766win.xyz
7can.com
*.7can.com
95737.locker
*.95737.locker
a21c0i.top
*.a21c0i.top
a363jwm.top
*.a363jwm.top
ace-plus.org
*.ace-plus.org
ada-taipei.org
*.ada-taipei.org
adentroyafuera.org
*.adentroyafuera.org
anglerfish.live
*.anglerfish.live
authenticat.com
*.authenticat.com
bandakazino-online.xyz
*.bandakazino-online.xyz
bb6727.vip
*.bb6727.vip
bcgame1.xyz
*.bcgame1.xyz
beticm.com
*.beticm.com
bravef.art
*.bravef.art
calcmd.com
*.calcmd.com
casinosykaaa1.xyz
*.casinosykaaa1.xyz
cvzpka.top
*.cvzpka.top
cyuxing.com
*.cyuxing.com
doctordavidzuhar.com
*.doctordavidzuhar.com
ee4e.cc
*.ee4e.cc
endura-sport.com
*.endura-sport.com
entreprises-et-handicap.com
*.entreprises-et-handicap.com
fakeluck.com
*.fakeluck.com
fire138.xyz
*.fire138.xyz
harris.ag
*.harris.ag
quicktsm.com
*.quicktsm.com
razofu.pro
*.razofu.pro
scboigzbbotxj.cc
*.scboigzbbotxj.cc
scent.vc
*.scent.vc
sched.rsvp
*.sched.rsvp
shopaspen.com
*.shopaspen.com
simplyguides.net
*.simplyguides.net
stakingrewards.pro
*.stakingrewards.pro
starbasefinancebank.com
*.starbasefinancebank.com
stickerchip.com
*.stickerchip.com
supersaletravel.com
*.supersaletravel.com
*.360.xn--8mq.com
xn--8mq.com
*.xn--8mq.com
zuka999.com
*.zuka999.com
Other domains in certificate