Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=136910.vip
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 18, 2026
Valid Until
May 19, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E5:45:C5:30:0A:3E:DF:B7:55:76:35:A6:C5:A6:34:C9:62:37:2B:43:80:55:16:D4:B0:5C:6B:7F:12:0D:B0:15
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
socalcottages.com
*.socalcottages.com
136910.vip
*.136910.vip
21mixnft.com
*.21mixnft.com
226608.xyz
*.226608.xyz
467861.cc
*.467861.cc
4gtc1kq9.top
*.4gtc1kq9.top
661034.cc
*.661034.cc
autowaw.com
*.autowaw.com
bodyandsoulhealthcenter.com
*.bodyandsoulhealthcenter.com
cbbanker.com
*.cbbanker.com
moxleyautosalesinc.org
*.moxleyautosalesinc.org
mvhlive.com
*.mvhlive.com
nooralzahrahotel.com
*.nooralzahrahotel.com
oldmanrhymes.com
*.oldmanrhymes.com
pashaproperties.com
*.pashaproperties.com
pilaresandinos.com
*.pilaresandinos.com
porhhd.com
*.porhhd.com
*.m.praisekink.org
praisekink.org
*.praisekink.org
*.m.primecbt.com
primecbt.com
*.primecbt.com
qy0518.vip
*.qy0518.vip
safecardinc.com
*.safecardinc.com
*.gitlab.sagitarioa.com
sagitarioa.com
*.sagitarioa.com
shikamaru.vip
*.shikamaru.vip
solorussianmodels.com
*.solorussianmodels.com
*.pvstkuat.somaticspiritualpsychology.com
somaticspiritualpsychology.com
*.somaticspiritualpsychology.com
soramaterial.com
*.soramaterial.com
sudomation.com
*.sudomation.com
swiftportal.click
*.swiftportal.click
teamclimatetech.com
*.teamclimatetech.com
techfpy.com
*.techfpy.com
technolo-g.com
*.technolo-g.com
thefamous-boobs.com
*.thefamous-boobs.com
travelloversadventure.live
*.travelloversadventure.live
trending-watches.click
*.trending-watches.click
usdt222.vip
*.usdt222.vip
usdt666.vip
*.usdt666.vip
valleyfront.com
*.valleyfront.com
vintage-hollywood.com
*.vintage-hollywood.com
vydpxja288.vip
*.vydpxja288.vip
wfcfjdb306.vip
*.wfcfjdb306.vip
wmico.academy
*.wmico.academy
wwt72.vip
*.wwt72.vip
xgxwfjy400.vip
*.xgxwfjy400.vip
Other domains in certificate