Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=12583.loan
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 12, 2026
Valid Until
August 10, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:80:28:9C:BA:6E:54:1A:27:4E:67:78:04:71:70:D8:1B:A8:2D:FC:F2:56:BB:4A:87:4F:05:83:A8:E7:81:E1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
scalegram.com
*.scalegram.com
12583.loan
*.12583.loan
1bn.lat
*.1bn.lat
21529.co
*.21529.co
3081115b.sbs
*.3081115b.sbs
309334.lgbt
*.309334.lgbt
37378.app
*.37378.app
43569.my
*.43569.my
454560.co
*.454560.co
45842.my
*.45842.my
48944.co
*.48944.co
48997.loan
*.48997.loan
565189.lgbt
*.565189.lgbt
717944.vip
*.717944.vip
7808ff.com
*.7808ff.com
87619.mobi
*.87619.mobi
b9n81sn.top
*.b9n81sn.top
checktheresults.com
*.checktheresults.com
codebrightt.com
*.codebrightt.com
happyuday.com
*.happyuday.com
isgow.com
*.isgow.com
jnfhx.loan
*.jnfhx.loan
joinrestohost.com
*.joinrestohost.com
jpkjcutkbn.cc
*.jpkjcutkbn.cc
legacymancer313.top
*.legacymancer313.top
nozc.me
*.nozc.me
pashixundl.com
*.pashixundl.com
pcweek.pe
*.pcweek.pe
pengtiaowuwei.cn
*.pengtiaowuwei.cn
perronfourrage.com
*.perronfourrage.com
personal-loans-nl.shop
*.personal-loans-nl.shop
prime-neuralport.xyz
*.prime-neuralport.xyz
pyd.my
*.pyd.my
raseds.com
*.raseds.com
re-decorate.com
*.re-decorate.com
restaurantforeverybodyuk.com
*.restaurantforeverybodyuk.com
sedao4.cyou
*.sedao4.cyou
tkided3ie.cc
*.tkided3ie.cc
topcleaning.co
*.topcleaning.co
tradingmaster10.com
*.tradingmaster10.com
trueeaglesync.co
*.trueeaglesync.co
vale-lawn-llc.digital
*.vale-lawn-llc.digital
viewflip.download
*.viewflip.download
xldzsc.com
*.xldzsc.com
z5uyzcu.cc
*.z5uyzcu.cc
Other domains in certificate