Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bit.black
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 17, 2026
Valid Until
August 15, 2026
66 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
26:99:3C:C4:2A:5D:DA:A2:A4:10:BD:4A:02:9E:36:B0:BE:2B:26:98:1A:D4:2B:95:14:B8:75:B4:06:99:2C:5D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
starrpass.org
*.starrpass.org
123truyene.xyz
*.123truyene.xyz
5365cp.xyz
*.5365cp.xyz
5thluxe.com
*.5thluxe.com
62256.co
*.62256.co
821272.cc
*.821272.cc
8z3p6h67we.top
*.8z3p6h67we.top
bit.black
*.bit.black
bola21.loan
*.bola21.loan
budha.qpon
*.budha.qpon
cabala.xyz
*.cabala.xyz
cocol88-rtp.com
*.cocol88-rtp.com
croissant.it.com
*.croissant.it.com
dayalmc.com
*.dayalmc.com
dfkxq.qpon
*.dfkxq.qpon
dhcmalaysia.com
*.dhcmalaysia.com
digital-marketing-zh.xyz
*.digital-marketing-zh.xyz
fq59k.mom
*.fq59k.mom
glint.lol
*.glint.lol
haftpflichtversicherungen.com
*.haftpflichtversicherungen.com
hartford-repchecks.one
*.hartford-repchecks.one
healingconsciousness.net
*.healingconsciousness.net
nutritionaleffects.com
*.nutritionaleffects.com
orders.lol
*.orders.lol
organoscreen.com
*.organoscreen.com
ozkda.cn
*.ozkda.cn
p3mlng.cyou
*.p3mlng.cyou
parts2cars.com
*.parts2cars.com
plantifydejatuhuella.com
*.plantifydejatuhuella.com
pomelynhospitalitygroup.com
*.pomelynhospitalitygroup.com
pro-caregiver.sbs
*.pro-caregiver.sbs
qgw58.icu
*.qgw58.icu
sc-multas.cfd
*.sc-multas.cfd
screwthescrew.com
*.screwthescrew.com
sge839.mom
*.sge839.mom
shaping.bot
*.shaping.bot
simsim.net
*.simsim.net
*.www.simsim.net
sugarsweatandsparks.com
*.sugarsweatandsparks.com
sunlola.top
*.sunlola.top
swheeladaptation.com
*.swheeladaptation.com
teschelderlaw.com
*.teschelderlaw.com
u2nd.com
*.u2nd.com
universetrainings.com
*.universetrainings.com
vibbra.vip
*.vibbra.vip
Other domains in certificate