Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=pgy6te6q.top
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 02, 2026
Valid Until
May 03, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C2:40:98:D1:E0:F2:C0:B6:5B:17:1B:F8:EC:6A:56:F8:5A:4B:35:9F:B1:5D:7D:C3:4C:CF:B6:F9:B3:B3:5C:EC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
statsgpt.io
*.statsgpt.io
pgy6te6q.top
*.pgy6te6q.top
powersmart.org
*.powersmart.org
prismrecording.com
*.prismrecording.com
pustakabaru.com
*.pustakabaru.com
ramalanhoki.asia
*.ramalanhoki.asia
ranjanrtps.xyz
*.ranjanrtps.xyz
redtune.top
*.redtune.top
regular-social-wellness-checkins-us-2618.click
*.regular-social-wellness-checkins-us-2618.click
remodelingcontractors615842.icu
*.remodelingcontractors615842.icu
revivalcitychurch.org
*.revivalcitychurch.org
rhinoplastysurgery298593.icu
*.rhinoplastysurgery298593.icu
rnyora.bid
*.rnyora.bid
roofingcleaningcompaniesinusa631074.icu
*.roofingcleaningcompaniesinusa631074.icu
royalgift.in
*.royalgift.in
rq959.top
*.rq959.top
rsa6bop07ai.top
*.rsa6bop07ai.top
rtpcair77sack.xyz
*.rtpcair77sack.xyz
rtpcair77tell.xyz
*.rtpcair77tell.xyz
running.luxury
*.running.luxury
rvuio.pro
*.rvuio.pro
ryxq4qx.cyou
*.ryxq4qx.cyou
sa761.top
*.sa761.top
safigifts.shop
*.safigifts.shop
severgazbank.com
*.severgazbank.com
shopvite.shop
*.shopvite.shop
silkroad4696.com
*.silkroad4696.com
simplevalley.net
*.simplevalley.net
singa168x.com
*.singa168x.com
single-bedroom-713373922.click
*.single-bedroom-713373922.click
sinqv.bid
*.sinqv.bid
sirwine.xyz
*.sirwine.xyz
sjz7f5p14ai.top
*.sjz7f5p14ai.top
skopb.pro
*.skopb.pro
slot728.college
*.slot728.college
smartly.marketing
*.smartly.marketing
smdc-qrpay.me
*.smdc-qrpay.me
socialsurge.us
*.socialsurge.us
soikeo.blog
*.soikeo.blog
spacedockcourierservices.site
*.spacedockcourierservices.site
speechtherapy638371.icu
*.speechtherapy638371.icu
srfgo.academy
*.srfgo.academy
sssgame.love
*.sssgame.love
stainless-steel-730353022.click
*.stainless-steel-730353022.click
statgpt.io
*.statgpt.io
Other domains in certificate