Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=capricious14.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 08, 2026
Valid Until
April 08, 2026
47 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BE:C6:41:6D:3E:DA:7C:BF:B9:27:E9:AF:E8:5C:41:2C:DC:72:75:F9:98:11:A4:5C:C6:44:CF:00:80:FF:D8:0B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
puul.com
*.puul.com
*.1ve5.puul.com
*.acceso.puul.com
*.api.puul.com
*.dqkw.puul.com
*.jimenez-term.puul.com
*.kute.puul.com
*.secure.puul.com
*.sts.puul.com
*.studentsvpn.puul.com
*.teams.puul.com
*.test.puul.com
*.ww25.puul.com
*.zmail.puul.com
88go.eu
*.88go.eu
aaonline.store
*.aaonline.store
africandaycares.com
*.africandaycares.com
*.58u119.avlulu756.xyz
*.8g6zx5.avlulu756.xyz
avlulu756.xyz
*.avlulu756.xyz
*.c0iavk.avlulu756.xyz
*.i1rq06.avlulu756.xyz
*.iiwdfq.avlulu756.xyz
betflikkiss.com
*.betflikkiss.com
*.ww25.betflikkiss.com
*.ww38.betflikkiss.com
bootstrap-software.org
*.bootstrap-software.org
capricious14.xyz
*.capricious14.xyz
conchoriverreview.org
*.conchoriverreview.org
dual.es
*.dual.es
*.experto.dual.es
*.patologia.dual.es
*.wsp.dual.es
friendsofwheelerrefuge.org
*.friendsofwheelerrefuge.org
jwo.io
*.jwo.io
*.random.jwo.io
kastil77.co
*.kastil77.co
moneyboxes.com.au
*.moneyboxes.com.au
*.random.moneyboxes.com.au
one1xbet.click
*.one1xbet.click
picmir.me
*.picmir.me
pinkbubblegumwebsites.com
*.pinkbubblegumwebsites.com
pizzawerk-dortmund.de
*.pizzawerk-dortmund.de
playjoy.vip
*.playjoy.vip
poop.kim
*.poop.kim
poop.media
*.poop.media
rama.education
*.rama.education
rapemeat.solutions
*.rapemeat.solutions
sala.bet
*.sala.bet
seethingswarm.com
*.seethingswarm.com
*.ww31.seethingswarm.com
toucauby.top
*.toucauby.top
trashpandanbg.de
*.trashpandanbg.de
tubes.red
*.tubes.red
*.gov.veer.life
*.random.veer.life
veer.life
*.veer.life
wollechmods.com
*.wollechmods.com
*.ww25.wollechmods.com
*.ww38.wollechmods.com
Other domains in certificate