Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=14391.lgbt
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 23, 2026
Valid Until
August 21, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DB:B5:A7:C8:AF:FC:E9:7E:4A:B5:B8:37:DA:98:30:2F:05:E2:D7:3D:6A:B4:F6:A9:C9:D2:8B:E4:73:8D:80:03
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
raviniadistrict.com
*.raviniadistrict.com
14391.lgbt
*.14391.lgbt
18165.lgbt
*.18165.lgbt
19147.lgbt
*.19147.lgbt
1metome.xyz
*.1metome.xyz
7gvideo.com
*.7gvideo.com
80218.lgbt
*.80218.lgbt
86065.lgbt
*.86065.lgbt
86626.lgbt
*.86626.lgbt
86627.lgbt
*.86627.lgbt
86653.lgbt
*.86653.lgbt
86656.lgbt
*.86656.lgbt
86659.lgbt
*.86659.lgbt
87810.lgbt
*.87810.lgbt
8pmfb0zqxk.icu
*.8pmfb0zqxk.icu
91769.lgbt
*.91769.lgbt
abank.org
*.abank.org
bettingwhale.com
*.bettingwhale.com
bewirtungsbeleg.one
*.bewirtungsbeleg.one
bewirtungsbelegapp.com
*.bewirtungsbelegapp.com
bichromatic.com
*.bichromatic.com
bigcockfuck.com
*.bigcockfuck.com
bluetooth-speakers-innovation-064.sbs
*.bluetooth-speakers-innovation-064.sbs
forexbrokerexchange.us
*.forexbrokerexchange.us
jvzof.sbs
*.jvzof.sbs
k1zfij.cyou
*.k1zfij.cyou
k28t.icu
*.k28t.icu
kentec.co
*.kentec.co
*.www.kentec.co
pricingmastery.co
*.pricingmastery.co
quanqiuzhuitaofanzhagoov.com
*.quanqiuzhuitaofanzhagoov.com
quavoos.com
*.quavoos.com
qzab.com
*.qzab.com
r8qy0fsg7g.icu
*.r8qy0fsg7g.icu
realestatepanel.com
*.realestatepanel.com
relentlessaction.com
*.relentlessaction.com
rupiah33alt6.shop
*.rupiah33alt6.shop
rxdjkppbz2.icu
*.rxdjkppbz2.icu
s6p8a1zdz61.shop
*.s6p8a1zdz61.shop
swiftexpresscapital.com
*.swiftexpresscapital.com
tourneyhub.digital
*.tourneyhub.digital
upnovaiojoin.info
*.upnovaiojoin.info
vsbet2.bond
*.vsbet2.bond
wajv1rqk68.icu
*.wajv1rqk68.icu
webifynest.com
*.webifynest.com
Other domains in certificate