Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=avanzase.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 21, 2026
Valid Until
July 20, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C7:1A:D6:63:39:0C:57:3A:DF:13:DD:72:C7:76:95:5E:26:55:51:24:78:75:71:A1:8C:27:FF:1F:DC:22:E5:13
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
secswap.com
*.secswap.com
0322218a8.sbs
*.0322218a8.sbs
0xthem7.xyz
*.0xthem7.xyz
1battery.com
*.1battery.com
asikthailand.site
*.asikthailand.site
avanzase.com
*.avanzase.com
axwu.com
*.axwu.com
axwx.com
*.axwx.com
azcl.com
*.azcl.com
bhasker.in
*.bhasker.in
chatabot.io
*.chatabot.io
conejamezcal.com
*.conejamezcal.com
k6y4e3p9tp.top
*.k6y4e3p9tp.top
lsdft.loans
*.lsdft.loans
myacaiberry.com
*.myacaiberry.com
preschool.biz
*.preschool.biz
promesa.io
*.promesa.io
proslack.com
*.proslack.com
qevc56es.top
*.qevc56es.top
quantumbiotic.com
*.quantumbiotic.com
quickreelsai.com
*.quickreelsai.com
r35f.icu
*.r35f.icu
refinanceproliberators.com
*.refinanceproliberators.com
scotspost.com
*.scotspost.com
search-online-psychological-test-mental-health-br.sbs
*.search-online-psychological-test-mental-health-br.sbs
secur0.one
*.secur0.one
sfgjdt45734dfg.cfd
*.sfgjdt45734dfg.cfd
sifouvoyages.com
*.sifouvoyages.com
telex.org
*.telex.org
thevoyagevista.live
*.thevoyagevista.live
u56s.icu
*.u56s.icu
ug7cmh.cyou
*.ug7cmh.cyou
umozwt.cyou
*.umozwt.cyou
wdwbot.com
*.wdwbot.com
webartisan.one
*.webartisan.one
webdesigningtool.info
*.webdesigningtool.info
wlrwa.com
*.wlrwa.com
womenleadai.com
*.womenleadai.com
wozaf.work
*.wozaf.work
xrpencil.com
*.xrpencil.com
xx77796.cc
*.xx77796.cc
xx88896.cc
*.xx88896.cc
ygern.town
*.ygern.town
zcloak.com
*.zcloak.com
zzsjq.work
*.zzsjq.work
Other domains in certificate