Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cfzag.tv
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E8:D7:1D:F8:F3:AF:06:85:96:51:DA:77:F7:4E:24:50:07:9C:D4:86:16:59:44:D1:53:D3:9F:E9:C0:2E:73:8A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sizzleaicopy.com
*.sizzleaicopy.com
cfzag.tv
*.cfzag.tv
chrofaisia.com
*.chrofaisia.com
comfortapartmentsbudapest.com
*.comfortapartmentsbudapest.com
crypto789.com
*.crypto789.com
cyberpeak.info
*.cyberpeak.info
denotation.net
*.denotation.net
enie.io
*.enie.io
genutract.com
*.genutract.com
googskldev.com
*.googskldev.com
googskldxz.com
*.googskldxz.com
googsqlzdk.com
*.googsqlzdk.com
hillsidesupplements.com
*.hillsidesupplements.com
iiwuo.net
*.iiwuo.net
iqbusinessprogram07.click
*.iqbusinessprogram07.click
jjyta.net
*.jjyta.net
kjjlwk.pro
*.kjjlwk.pro
lakiery.com
*.lakiery.com
ligaz24th.live
*.ligaz24th.live
mobjch.net
*.mobjch.net
onebank-aftership.com
*.onebank-aftership.com
otterraftbushcraft.com
*.otterraftbushcraft.com
oy27c9fj.top
*.oy27c9fj.top
pc6cdnp.top
*.pc6cdnp.top
pgfc.bid
*.pgfc.bid
pgii.bid
*.pgii.bid
plinko-pt.vip
*.plinko-pt.vip
ppimoe.pro
*.ppimoe.pro
pwmcoy.net
*.pwmcoy.net
ruhumuzdax4.org
*.ruhumuzdax4.org
rzvsound.com
*.rzvsound.com
sixmg.net
*.sixmg.net
sqlcloudx.com
*.sqlcloudx.com
sqlfluttz.com
*.sqlfluttz.com
sqlgooglz.com
*.sqlgooglz.com
sqlhubdev.com
*.sqlhubdev.com
sqlmysqldk.com
*.sqlmysqldk.com
sqlreactzq.com
*.sqlreactzq.com
ticketmsater.com
*.ticketmsater.com
toeot.kaufen
*.toeot.kaufen
toitiao.com
*.toitiao.com
ufa1193.vip
*.ufa1193.vip
ufa989.vip
*.ufa989.vip
vele.io
*.vele.io
vitalbet.org
*.vitalbet.org
Other domains in certificate