Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=careerladderclimb.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 11, 2026
Valid Until
May 12, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:E9:82:19:27:93:30:0A:48:25:CF:8E:07:F5:21:D1:8E:37:DB:94:09:D6:1C:C8:5B:22:2C:DA:2C:DC:44:1D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
strategiya.com
*.strategiya.com
*.api.strategiya.com
*.authsmtp.strategiya.com
*.dev.strategiya.com
*.gw.strategiya.com
*.mail.strategiya.com
*.rds.strategiya.com
*.remote.strategiya.com
*.sitemap.strategiya.com
*.test.strategiya.com
*.ww17.strategiya.com
*.124389.4042517.top
*.20251010.4042517.top
*.3.4042517.top
*.316.4042517.top
4042517.top
*.4042517.top
*.44467.4042517.top
*.4649530.4042517.top
*.5.4042517.top
*.ts.4042517.top
*.ww17.4042517.top
*.xc.4042517.top
*.xn--09100-404xav-u76uaa.4042517.top
*.xn--09301-404xavcom-2h61a0814fire.4042517.top
*.xn--09302-404xavcom-2h61a0814fire.4042517.top
*.xn--10020-404xavcom-2h61a0814fire.4042517.top
*.xn--10030-404xavcom-2h61a0814fire.4042517.top
*.xn--10031-404xavcom-2h61a0814fire.4042517.top
*.xn--10051-404xavcom-2h61a0814fire.4042517.top
*.xn--10061-404xavcom-2h61a0814fire.4042517.top
*.xn--10080-404xavcom-2h61a0814fire.4042517.top
*.xn--10100-404xavcom-2h61a0814fire.4042517.top
*.xn--10101-404xavcom-2h61a0814fire.4042517.top
*.xn--10111-404xavcom-2h61a0814fire.4042517.top
*.xn--10131-404xavcom-2h61a0814fire.4042517.top
*.xn--10140-404xavcom-2h61a0814fire.4042517.top
*.xn--10141-404xavcom-2h61a0814fire.4042517.top
*.xn--10142-404xavcom-2h61a0814fire.4042517.top
*.xn--8ov.4042517.top
ayunar.com
*.ayunar.com
*.m.ayunar.com
*.ww1.ayunar.com
*.ww16.ayunar.com
*.ww25.ayunar.com
*.api.biaji.com
biaji.com
*.biaji.com
*.dev.biaji.com
*.random.biaji.com
*.sew.biaji.com
*.test.biaji.com
*.ww16.biaji.com
*.ww25.biaji.com
careerladderclimb.xyz
*.careerladderclimb.xyz
*.kwid9.careerladderclimb.xyz
*.rczhl.careerladderclimb.xyz
elfaro.restaurant
*.elfaro.restaurant
*.api.limozin.com
*.backup.limozin.com
*.beta.limozin.com
*.crm.limozin.com
*.dev.limozin.com
limozin.com
*.limozin.com
*.mail.limozin.com
*.test.limozin.com
*.ww16.limozin.com
*.api.makehope.com
*.dev.makehope.com
*.forum.makehope.com
*.forums.makehope.com
*.help.makehope.com
*.hostmaster.makehope.com
*.mail.makehope.com
makehope.com
*.makehope.com
*.ww16.makehope.com
*.ww17.makehope.com
*.ww25.makehope.com
*.ww38.makehope.com
*.5bf712c8-f803-4364-af65-0069f73cab95.seeoyun.xyz
*.gx.seeoyun.xyz
seeoyun.xyz
*.seeoyun.xyz
*.sub.seeoyun.xyz
Other domains in certificate