Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=safe-mark.click
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 19, 2026
Valid Until
May 20, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EF:3A:9A:81:E5:AB:9F:A1:CA:23:DA:32:3C:BC:27:EA:B7:11:E8:10:42:E5:92:07:49:FB:37:F0:8F:34:B3:17
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
shutter.today
*.shutter.today
*.cpanel.shutter.today
*.services.shutter.today
*.webdisk.shutter.today
*.ww25.shutter.today
ashangxing.top
*.ashangxing.top
*.jeu.ashangxing.top
*.tzm.ashangxing.top
calcadossshtz.com.br
*.calcadossshtz.com.br
*.ns1.calcadossshtz.com.br
*.ns2.calcadossshtz.com.br
*.cxie3.d3621c.top
d3621c.top
*.d3621c.top
*.kwid9.d3621c.top
dancersblog.com
*.dancersblog.com
*.www.dancersblog.com
dateescort.com
*.dateescort.com
*.vpn.dateescort.com
*.vpn01.dateescort.com
*.comune.gonzalodiaz.com
gonzalodiaz.com
*.gonzalodiaz.com
*.mx.gonzalodiaz.com
*.remote.gonzalodiaz.com
*.ssl.gonzalodiaz.com
*.sslvpn.gonzalodiaz.com
*.sslvpn2.gonzalodiaz.com
haicao113.com
*.haicao113.com
*.sso.haicao113.com
insight-hub.shop
*.insight-hub.shop
*.rustore.insight-hub.shop
krasno.it
*.krasno.it
*.remote.krasno.it
*.go.machinepower.click
machinepower.click
*.machinepower.click
moonshotinc.money
*.moonshotinc.money
*.ww25.moonshotinc.money
nooby.it
*.nooby.it
*.www.nooby.it
opposition.com.au
*.opposition.com.au
*.ww25.opposition.com.au
*.mail.paxmonsportswear.com
paxmonsportswear.com
*.paxmonsportswear.com
racer.watch
*.racer.watch
*.ww25.racer.watch
*.ww38.racer.watch
*.mail.rashdan.com
rashdan.com
*.rashdan.com
*.go.safe-mark.click
safe-mark.click
*.safe-mark.click
secondmoonshot.money
*.secondmoonshot.money
*.ww25.secondmoonshot.money
siapayah.com
*.siapayah.com
*.ww02.siapayah.com
stellarart.com
*.stellarart.com
*.andrey.tamrof.club
tamrof.club
*.tamrof.club
*.image.txrhpjddhbal.com
txrhpjddhbal.com
*.txrhpjddhbal.com
volumil.us
*.volumil.us
www03266.vip
*.www03266.vip
*.www.xiuxiqu.vip
xiuxiqu.vip
*.xiuxiqu.vip
yl9679.net
*.yl9679.net
Other domains in certificate