Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=202aaa130.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 13, 2026
Valid Until
August 11, 2026
58 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9F:40:2A:A6:F6:BE:F4:C5:74:E2:8F:CB:41:77:59:BF:F7:41:BB:D9:C2:6B:28:0E:27:10:C5:E1:02:64:BB:A8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
mymathplan.com
*.mymathplan.com
1xbetbet-x5b.top
*.1xbetbet-x5b.top
2006789.com
*.2006789.com
20079.one
*.20079.one
202aaa129.top
*.202aaa129.top
202aaa130.top
*.202aaa130.top
202aaa131.top
*.202aaa131.top
202bbb080.top
*.202bbb080.top
202ddd315.top
*.202ddd315.top
202ddd316.top
*.202ddd316.top
202ddd319.top
*.202ddd319.top
202ddd320.top
*.202ddd320.top
clicknlink.com
*.clicknlink.com
consultantgence.com
*.consultantgence.com
d6xagxoydf.top
*.d6xagxoydf.top
dhcx22.com
*.dhcx22.com
epictraveldeals.live
*.epictraveldeals.live
finevinos.com
*.finevinos.com
fundpress.xyz
*.fundpress.xyz
gowandr.click
*.gowandr.click
grenviloza.cfd
*.grenviloza.cfd
hogansell.com
*.hogansell.com
indcareers.in
*.indcareers.in
nanvgu.sbs
*.nanvgu.sbs
need-dental-implants-3t.click
*.need-dental-implants-3t.click
negotiation.ie
*.negotiation.ie
*.2.nnm.in
nnm.in
*.nnm.in
paris-amsterdam-coach-tour-packge-uk.sbs
*.paris-amsterdam-coach-tour-packge-uk.sbs
participedoenem.info
*.participedoenem.info
quickprinterdeals.sbs
*.quickprinterdeals.sbs
russellskitchen.com
*.russellskitchen.com
surgicheck.com
*.surgicheck.com
vui22.com
*.vui22.com
wall-shelves-l5.click
*.wall-shelves-l5.click
washersdish-for-dishwashing-forworks-needed248.sbs
*.washersdish-for-dishwashing-forworks-needed248.sbs
window-replacement-jobs-8v1d8q7a2z2.sbs
*.window-replacement-jobs-8v1d8q7a2z2.sbs
winesmiles.com
*.winesmiles.com
wqewqiewqrerqw1008.top
*.wqewqiewqrerqw1008.top
writigent.com
*.writigent.com
writingaiq.com
*.writingaiq.com
xujowhtnbobkrxh.cc
*.xujowhtnbobkrxh.cc
zqfxum065k3p.cc
*.zqfxum065k3p.cc
zwimba.pro
*.zwimba.pro
zwjnj396.com
*.zwjnj396.com
Other domains in certificate