Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=0-0-4.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FD:B9:99:91:E7:E1:7D:A5:D5:2C:B8:89:F3:86:61:BA:85:FB:00:38:40:1C:49:C5:E7:AB:AD:17:AA:1F:EC:2C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sephora.us.com
*.sephora.us.com
*.staging.sephora.us.com
0-0-4.com
*.0-0-4.com
02619.co
*.02619.co
062478.work
*.062478.work
06381.co
*.06381.co
0727.it
*.0727.it
077289.cfd
*.077289.cfd
091003.pictures
*.091003.pictures
123dh3.buzz
*.123dh3.buzz
160607.club
*.160607.club
17279.one
*.17279.one
210234.com
*.210234.com
225311.com
*.225311.com
25940.shop
*.25940.shop
29325.bid
*.29325.bid
salaryrockstar.com
*.salaryrockstar.com
salaryvantage.com
*.salaryvantage.com
salarywatcher.com
*.salarywatcher.com
sale-advertising-687417619.click
*.sale-advertising-687417619.click
salead.it
*.salead.it
salebay.it
*.salebay.it
saleonline.co
*.saleonline.co
sales-elements-start.com
*.sales-elements-start.com
sales-leads-mgmt-il-6512.click
*.sales-leads-mgmt-il-6512.click
saragikaroniiosdalshare.cyou
*.saragikaroniiosdalshare.cyou
sarkariresulttools.in
*.sarkariresulttools.in
*.cart.sasta.rent
sasta.rent
*.sasta.rent
satisfactionsurvey.it
*.satisfactionsurvey.it
satviki.in
*.satviki.in
sb12v.top
*.sb12v.top
sb12z.top
*.sb12z.top
schneiderarchitecturalworks.com
*.schneiderarchitecturalworks.com
schuberttouristik.com
*.schuberttouristik.com
scommessecalcio.it
*.scommessecalcio.it
scubaprohome.com
*.scubaprohome.com
searcher.chat
*.searcher.chat
searchtrigifyhq.com
*.searchtrigifyhq.com
securitytest.co
*.securitytest.co
sendmoneybyphone.it
*.sendmoneybyphone.it
sepwym.bid
*.sepwym.bid
serenetravelvenues.live
*.serenetravelvenues.live
sewatjxo.xyz
*.sewatjxo.xyz
sexygirlspic.com
*.sexygirlspic.com
shadeston.com
*.shadeston.com
Other domains in certificate