Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tsoy-a.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DF:C1:94:B5:DC:91:0B:CC:75:48:8D:0B:BF:8F:43:08:FF:4A:87:27:77:F0:82:C0:F3:21:5B:67:09:16:06:76
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
spectracolorado.com
*.spectracolorado.com
*.www.spectracolorado.com
ardesoft.site
*.ardesoft.site
*.ww25.ardesoft.site
automotivestop.de
*.automotivestop.de
bs382.ch
*.bs382.ch
*.random.bs382.ch
*.ww25.bs382.ch
buyfreshnepal.com
*.buyfreshnepal.com
buymascars.de
*.buymascars.de
*.api.chatgptree.com
*.authsmtp.chatgptree.com
*.box.chatgptree.com
chatgptree.com
*.chatgptree.com
*.ftp.chatgptree.com
*.mx0.chatgptree.com
*.mx5.chatgptree.com
*.mxs.chatgptree.com
*.random.chatgptree.com
*.smtp2.chatgptree.com
*.srv.chatgptree.com
*.ww25.chatgptree.com
*.ww38.chatgptree.com
*.zimbra.chatgptree.com
ciresource.de
*.ciresource.de
dirtybrown.de
*.dirtybrown.de
*.admin.eua2a.com
*.api.eua2a.com
*.app.eua2a.com
*.dev.eua2a.com
eua2a.com
*.eua2a.com
*.staging.eua2a.com
*.uat.eua2a.com
*.www.eua2a.com
filma.me
*.filma.me
*.pa.filma.me
*.ww38.filma.me
gutterprotectioninc.de
*.gutterprotectioninc.de
hempfestedmonton.com
*.hempfestedmonton.com
jobitm.info
*.jobitm.info
justika.de
*.justika.de
parkplacesalonvb.de
*.parkplacesalonvb.de
*.magento.premierlogos.uk
premierlogos.uk
*.premierlogos.uk
*.ww16.premierlogos.uk
progressivea.de
*.progressivea.de
puertogoacademy.com
*.puertogoacademy.com
*.by.raelyn.com
*.hostmaster.raelyn.com
raelyn.com
*.raelyn.com
spinharta33.com
*.spinharta33.com
stemelsupplyinc.de
*.stemelsupplyinc.de
tartannet.ir
*.tartannet.ir
tsoy-a.online
*.tsoy-a.online
*.ww25.tsoy-a.online
unitedrental.ca
*.unitedrental.ca
*.ww25.unitedrental.ca
wirelessmicrophones.com.au
*.wirelessmicrophones.com.au
*.hostmaster.xidemedia.com
xidemedia.com
*.xidemedia.com
zahrana.net
*.zahrana.net
Other domains in certificate