Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cplka.bid
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 18, 2026
Valid Until
August 16, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A5:7A:79:15:61:C1:5B:29:90:A3:43:80:32:D6:E0:75:05:B9:F7:6C:08:22:AA:B5:36:F2:DE:00:23:27:C9:B8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
trywaterfalls.co
*.trywaterfalls.co
com-11.co
*.com-11.co
cplka.bid
*.cplka.bid
crowdzone.co
*.crowdzone.co
cufaz.com
*.cufaz.com
ewc46zc.top
*.ewc46zc.top
ezproxie.co
*.ezproxie.co
familyecho.co
*.familyecho.co
farii.bid
*.farii.bid
fedgex.org
*.fedgex.org
fhgbfh.xyz
*.fhgbfh.xyz
flass.co
*.flass.co
fnifw.bid
*.fnifw.bid
fqlit.bid
*.fqlit.bid
frogmath.co
*.frogmath.co
furnishedfinders.co
*.furnishedfinders.co
geek-time.co
*.geek-time.co
gigez.bid
*.gigez.bid
theofficebkk.co
*.theofficebkk.co
thewealthyhealthy.co
*.thewealthyhealthy.co
time2win.co
*.time2win.co
tinyjuke.co
*.tinyjuke.co
trackeye.co
*.trackeye.co
tx6p.cc
*.tx6p.cc
ukpqv.bid
*.ukpqv.bid
umbjpk.cyou
*.umbjpk.cyou
vanguar.co
*.vanguar.co
vitalgear.co
*.vitalgear.co
w13729222.com
*.w13729222.com
w3637.com
*.w3637.com
waynestreeservice.co
*.waynestreeservice.co
weserwaben.com
*.weserwaben.com
www8y8y.me
*.www8y8y.me
wwwwfdg7.cc
*.wwwwfdg7.cc
xlj0xfgzpkbetua.cc
*.xlj0xfgzpkbetua.cc
xsrnl.com
*.xsrnl.com
yaytext.co
*.yaytext.co
youjzz.co
*.youjzz.co
youplrn.co
*.youplrn.co
youpoen.co
*.youpoen.co
yourenergyhealer.co
*.yourenergyhealer.co
yourmechanic.co
*.yourmechanic.co
yuhvt.loan
*.yuhvt.loan
yxxuejian.xyz
*.yxxuejian.xyz
zakstudios.co
*.zakstudios.co
Other domains in certificate