Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=win19.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 25, 2026
Valid Until
July 24, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
ED:09:47:F6:61:A8:0F:0E:41:72:16:CA:E7:3A:C9:E1:90:90:37:E8:0E:FB:A6:2F:CF:31:A8:EF:3B:A4:D3:19
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
syncpulseplatform.xyz
*.syncpulseplatform.xyz
11160.sx
*.11160.sx
apes.live
*.apes.live
*.do.apes.live
baby-carriers-downunder.com
*.baby-carriers-downunder.com
*.dns.baby-carriers-downunder.com
*.hostmaster.baby-carriers-downunder.com
*.mail.baby-carriers-downunder.com
*.mx7.baby-carriers-downunder.com
*.ww25.baby-carriers-downunder.com
*.ww38.baby-carriers-downunder.com
*.www.baby-carriers-downunder.com
beyondbending.com
*.beyondbending.com
*.webmail.beyondbending.com
*.courier.guy.co.za
guy.co.za
*.guy.co.za
*.hostmaster.guy.co.za
*.ww25.guy.co.za
*.cafehatton.lifeisaplay.com
*.cleancarpro.lifeisaplay.com
*.couragehub.lifeisaplay.com
*.financialfreedomquest.lifeisaplay.com
lifeisaplay.com
*.lifeisaplay.com
*.opencitydance.lifeisaplay.com
*.paladincommunications.lifeisaplay.com
*.reclaimingsales.lifeisaplay.com
marchmanassociates.com
*.marchmanassociates.com
mathapy.com
*.mathapy.com
medizin-service.com
*.medizin-service.com
modelify.live
*.modelify.live
modulardress.com
*.modulardress.com
mylifegate.com
*.mylifegate.com
*.autodiscover.pbbpl.co.in
pbbpl.co.in
*.pbbpl.co.in
prompts.bible
*.prompts.bible
qqhnqvj592.vip
*.qqhnqvj592.vip
reachnetrevenuehub.com
*.reachnetrevenuehub.com
recyclage-sterling.com
*.recyclage-sterling.com
rockabyebooks.com
*.rockabyebooks.com
roofingprocess.com
*.roofingprocess.com
samsunguae.com
*.samsunguae.com
satinlinedhoodie.com
*.satinlinedhoodie.com
seller.bargains
*.seller.bargains
shayariboss.com
*.shayariboss.com
siamviking.com
*.siamviking.com
trymastra.one
*.trymastra.one
vacationclarityhub.live
*.vacationclarityhub.live
wcbgi.auction
*.wcbgi.auction
*.files.win19.org
*.jobuj.win19.org
*.list.win19.org
win19.org
*.win19.org
wineflush.com
*.wineflush.com
wyttl.auction
*.wyttl.auction
xn--sjt072h4nggqe.com
*.xn--sjt072h4nggqe.com
yashdongre.com
*.yashdongre.com
Other domains in certificate