Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=bidiptv.net
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 21, 2026
Valid Until
April 21, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4F:14:1C:2C:24:F4:44:96:90:2C:0D:84:69:B4:57:4F:B3:A6:2C:6A:EE:AE:59:99:58:99:9D:4E:37:71:86:23
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
khujand.com
*.khujand.com
*.app.khujand.com
*.ar.khujand.com
*.art.khujand.com
*.blog.khujand.com
*.blogs.khujand.com
*.br.khujand.com
*.cicd.khujand.com
*.city.khujand.com
*.client.khujand.com
*.com.khujand.com
*.courts.khujand.com
*.domains.khujand.com
*.fas.khujand.com
*.fr.khujand.com
*.hqstambemecultura.khujand.com
*.in.khujand.com
*.it.khujand.com
*.jp.khujand.com
*.lib.khujand.com
*.lyabihouse.khujand.com
*.mc.khujand.com
*.net.khujand.com
*.pipeline.khujand.com
*.referrals.khujand.com
*.ro.khujand.com
*.ru.khujand.com
*.sa.khujand.com
*.secure.khujand.com
*.shop.khujand.com
*.sms.khujand.com
*.social.khujand.com
*.software.khujand.com
*.sports.khujand.com
*.state.khujand.com
*.team.khujand.com
*.us.khujand.com
*.web.khujand.com
*.ww25.khujand.com
*.www.khujand.com
*.yz.khujand.com
bidiptv.net
*.bidiptv.net
bonghacams.com
*.bonghacams.com
*.hostmaster.bonghacams.com
cinemaxcinemas.com.au
*.cinemaxcinemas.com.au
*.smtp.cinemaxcinemas.com.au
*.ww16.cinemaxcinemas.com.au
*.ww25.cinemaxcinemas.com.au
coinfeucet.click
*.coinfeucet.click
*.8386d6c1-5aea-40af-9e90-57b98e4ad528.eswc2005.org
*.apis.eswc2005.org
eswc2005.org
*.eswc2005.org
*.www.eswc2005.org
flightofthebox.online
*.flightofthebox.online
gayvideo.world
*.gayvideo.world
havenchat.online
*.havenchat.online
hdtruzo.cc
*.hdtruzo.cc
*.janc4v1l.hdtruzo.cc
*.vdqibfkv.hdtruzo.cc
*.vyregczt.hdtruzo.cc
*.ww25.hdtruzo.cc
*.ywukthll.hdtruzo.cc
lasercuttingwelding465379.icu
*.lasercuttingwelding465379.icu
lasercuttingwelding832856.icu
*.lasercuttingwelding832856.icu
*.aa.nvidjm.com
nvidjm.com
*.nvidjm.com
qadap.shop
*.qadap.shop
*.sabrina.qadap.shop
ukgiftmeds.com
*.ukgiftmeds.com
*.docsity.vdpdfs.com
*.scribd.vdpdfs.com
vdpdfs.com
*.vdpdfs.com
yuppmovies.me
*.yuppmovies.me
Other domains in certificate