Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=schroffus.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F2:52:5A:3B:FD:3C:1E:B4:36:DC:02:C4:82:B5:71:F3:D9:C9:6D:A9:81:B7:A8:85:3A:D0:8C:E0:EA:6C:C1:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
superboonie.com
*.superboonie.com
schroffus.com
*.schroffus.com
schwul.xyz
*.schwul.xyz
secured-web.com
*.secured-web.com
semar99above.com
*.semar99above.com
seotop.pics
*.seotop.pics
serimkarniniosdalippro.cyou
*.serimkarniniosdalippro.cyou
shameweatherworm.pics
*.shameweatherworm.pics
sharinganisland.com
*.sharinganisland.com
shauntedittmar.com
*.shauntedittmar.com
shibuya-medical-931284526.click
*.shibuya-medical-931284526.click
shortwhite.info
*.shortwhite.info
six6sbet.click
*.six6sbet.click
skeptics.it
*.skeptics.it
slot5gpgslot.com
*.slot5gpgslot.com
smartprofr.com
*.smartprofr.com
smartrings.now
*.smartrings.now
spckkbz.cyou
*.spckkbz.cyou
spintech.asia
*.spintech.asia
ssu66.com
*.ssu66.com
stnaragaronioasdalset.cyou
*.stnaragaronioasdalset.cyou
stormpro.net
*.stormpro.net
studioautomation.com
*.studioautomation.com
stylearttop.com
*.stylearttop.com
survivalsimon.com
*.survivalsimon.com
szendafx.biz
*.szendafx.biz
szkws.com
*.szkws.com
tanczy.my
*.tanczy.my
tastefulfoodadventures.cyou
*.tastefulfoodadventures.cyou
tdescargas.org
*.tdescargas.org
techvisionrevolution.xyz
*.techvisionrevolution.xyz
tecracerlabs.com
*.tecracerlabs.com
tendancepc.net
*.tendancepc.net
texasdisplayco.com
*.texasdisplayco.com
tger2025.com
*.tger2025.com
tger3.com
*.tger3.com
thai99stars.agency
*.thai99stars.agency
thaiorchiddublin.com
*.thaiorchiddublin.com
theborleycompany.com
*.theborleycompany.com
tniseraronilasdaltzone.cyou
*.tniseraronilasdaltzone.cyou
toptiersafeshare.com
*.toptiersafeshare.com
transferexchange.it
*.transferexchange.it
traveljourneyworld.xyz
*.traveljourneyworld.xyz
trendo.it
*.trendo.it
tresorstop.com
*.tresorstop.com
Other domains in certificate