Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=siflix.to
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 01, 2026
Valid Until
June 30, 2026
42 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:68:68:A1:08:0F:6D:87:D5:0D:D4:ED:12:CE:70:0A:C5:07:56:1E:80:BA:0A:38:F8:F0:A6:2B:22:AD:6E:61
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
secureproxysite.com
*.secureproxysite.com
*.alpha.aoutotrader.com
aoutotrader.com
*.aoutotrader.com
*.ww16.aoutotrader.com
*.ww25.aoutotrader.com
*.ww38.aoutotrader.com
arindianctr.org
*.arindianctr.org
*.ww38.arindianctr.org
bailitex.com
*.bailitex.com
dfk92.top
*.dfk92.top
diyyyy30.xyz
*.diyyyy30.xyz
*.about.elheraldo.com
*.admin-api.elheraldo.com
*.apis.elheraldo.com
*.bfqde2023llsplde12qd27qdl.elheraldo.com
*.clasificados.elheraldo.com
*.config.elheraldo.com
elheraldo.com
*.elheraldo.com
*.erp.elheraldo.com
*.m.elheraldo.com
*.pdf.elheraldo.com
*.portal.elheraldo.com
*.revistas.elheraldo.com
*.shop.elheraldo.com
*.web.elheraldo.com
*.ws.elheraldo.com
*.ww1.elheraldo.com
*.ww11.elheraldo.com
*.ww16.elheraldo.com
*.ww25.elheraldo.com
*.ww38.elheraldo.com
growprontoconsulting.com
*.growprontoconsulting.com
growprontoecom.com
*.growprontoecom.com
growprontoemailbuilder.com
*.growprontoemailbuilder.com
growprontoemaillaunch.com
*.growprontoemaillaunch.com
growprontoemailshop.com
*.growprontoemailshop.com
growprontoexpert.com
*.growprontoexpert.com
growprontofunnel.com
*.growprontofunnel.com
growprontopros.com
*.growprontopros.com
growprontosquad.com
*.growprontosquad.com
hd9w5oy.my
*.hd9w5oy.my
jwtmtqfwymat6gw.top
*.jwtmtqfwymat6gw.top
kcbiker.com
*.kcbiker.com
mintingdigital.com
*.mintingdigital.com
multiredgistrobn-enlinea25.top
*.multiredgistrobn-enlinea25.top
okbqe.direct
*.okbqe.direct
ozt.au
*.ozt.au
*.ww38.ozt.au
pgqwy.fo
*.pgqwy.fo
powerpedal.today
*.powerpedal.today
qkovugi9wgjgwez.top
*.qkovugi9wgjgwez.top
quenvik.cfd
*.quenvik.cfd
rfkya.trade
*.rfkya.trade
scalewithgrowpronto.com
*.scalewithgrowpronto.com
seng-piluoxiening.top
*.seng-piluoxiening.top
seniors-smartphone-34752.click
*.seniors-smartphone-34752.click
siflix.to
*.siflix.to
Other domains in certificate