Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=auramovieflix.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 21, 2026
Valid Until
May 22, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F5:22:04:C9:D1:F6:A0:EF:24:4D:CA:04:E4:77:A6:CC:15:21:BB:08:B5:F3:76:C8:4A:B5:4B:79:8A:EB:31:FD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
systemyip.pl
*.systemyip.pl
*.fhjzedmnk.systemyip.pl
*.nxwzfpklb.systemyip.pl
*.thpmdaesk.systemyip.pl
alertnumbers.com
*.alertnumbers.com
*.ww17.alertnumbers.com
auramovieflix.xyz
*.auramovieflix.xyz
*.bedrijven.auramovieflix.xyz
*.phpmyadmin.auramovieflix.xyz
*.random.auramovieflix.xyz
*.ww25.auramovieflix.xyz
bebefitscal.com
*.bebefitscal.com
caravanbuyersguide.co.uk
*.caravanbuyersguide.co.uk
*.dev.caravanbuyersguide.co.uk
*.ww1.caravanbuyersguide.co.uk
*.ww16.caravanbuyersguide.co.uk
ddcofficefurniture.co.uk
*.ddcofficefurniture.co.uk
*.mail.ddcofficefurniture.co.uk
*.pop3.ddcofficefurniture.co.uk
*.ww25.ddcofficefurniture.co.uk
*.xn--www-hn0a.ddcofficefurniture.co.uk
*.xn--www-hna.ddcofficefurniture.co.uk
epoch-times.de
*.epoch-times.de
*.hostmaster.epoch-times.de
guitercenter.com
*.guitercenter.com
*.server1.guitercenter.com
*.shop.guitercenter.com
*.ww16.guitercenter.com
*.ww38.guitercenter.com
*.api.redit.it
*.dashboard.redit.it
*.dev.redit.it
*.gruppoc.redit.it
*.i.redit.it
*.netcraft.redit.it
*.notexistsstaging.redit.it
redit.it
*.redit.it
*.v.redit.it
*.app.summerrentals.it
*.backend.summerrentals.it
*.bigdata.summerrentals.it
*.reports.summerrentals.it
summerrentals.it
*.summerrentals.it
*.iwins.tf88casino.vip
tf88casino.vip
*.tf88casino.vip
*.ww25.tf88casino.vip
*.www.tf88casino.vip
*.xosomega.tf88casino.vip
*.admin.wallsexy.net
*.adubpshop.wallsexy.net
*.ai.wallsexy.net
*.api.wallsexy.net
*.beta.wallsexy.net
*.client.wallsexy.net
*.collaborate.wallsexy.net
*.config.wallsexy.net
*.dev-api.wallsexy.net
*.docs.wallsexy.net
*.exchange.wallsexy.net
*.imap.wallsexy.net
*.iot.wallsexy.net
*.login.wallsexy.net
*.mail.wallsexy.net
*.mp.wallsexy.net
*.openapi.wallsexy.net
*.outlook.wallsexy.net
*.partners.wallsexy.net
*.pop.wallsexy.net
*.prod.wallsexy.net
*.server.wallsexy.net
*.services.wallsexy.net
*.storage.wallsexy.net
*.summary.wallsexy.net
wallsexy.net
*.wallsexy.net
*.wildcard.wallsexy.net
*.ww7.wallsexy.net
*.www.wallsexy.net
*.xcx.wallsexy.net
Other domains in certificate