Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=autoweek.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 23, 2026
Valid Until
April 23, 2026
57 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
20:22:1A:28:12:24:DB:1B:C2:53:53:A1:D2:B3:A1:B0:2C:7B:03:95:5D:A5:A8:68:F2:09:DF:6F:BE:FE:41:D9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
nexusmod.com
*.nexusmod.com
*.38.nexusmod.com
*.darksouls.nexusmod.com
*.forums.nexusmod.com
*.integration.nexusmod.com
*.skyrim.nexusmod.com
*.user.nexusmod.com
*.users.nexusmod.com
*.ww.nexusmod.com
*.ww3.nexusmod.com
*.ww38.nexusmod.com
*.ww3user.nexusmod.com
*.wwusers.nexusmod.com
*.www.nexusmod.com
*.wwwuser.nexusmod.com
*.xn--nsra.nexusmod.com
autoweek.live
*.autoweek.live
*.email.autoweek.live
*.ww38.autoweek.live
*.www.autoweek.live
berdoodles.com
*.berdoodles.com
*.ww17.berdoodles.com
*.ww38.berdoodles.com
*.91369c93-87a6-4d7e-ab43-3d035f5db030.cricktime.live
cricktime.live
*.cricktime.live
*.www.cricktime.live
*.correo.cristello.com
cristello.com
*.cristello.com
*.ex02.cristello.com
*.kndzxohsny.cristello.com
*.login.cristello.com
*.mail.cristello.com
*.outlook.cristello.com
*.scrm.cristello.com
*.sip.cristello.com
*.to.cristello.com
*.tom.cristello.com
*.webmail.cristello.com
h3mods.com
*.h3mods.com
*.ww16.h3mods.com
*.ww25.h3mods.com
jurisaprendiz.com.br
*.jurisaprendiz.com.br
*.loja.jurisaprendiz.com.br
*.ns1.jurisaprendiz.com.br
*.ns2.jurisaprendiz.com.br
*.ns3.jurisaprendiz.com.br
*.ww25.jurisaprendiz.com.br
mature1.com
*.mature1.com
mypremercreditcard.com
*.mypremercreditcard.com
*.ww25.mypremercreditcard.com
no-fee-injury-lawyers244288.icu
*.no-fee-injury-lawyers244288.icu
obediencetraining292355.icu
*.obediencetraining292355.icu
ourootz.co
*.ourootz.co
simon-statik.de
*.simon-statik.de
t8nder.com
*.t8nder.com
*.ww25.t8nder.com
trophycase.cc
*.trophycase.cc
*.ftp.usportangola.com
usportangola.com
*.usportangola.com
*.ww25.usportangola.com
warehouseforkliftjobs652069.icu
*.warehouseforkliftjobs652069.icu
*.sitemap.wearpump.store
wearpump.store
*.wearpump.store
*.www.wearpump.store
weight-loss-injections042091.icu
*.weight-loss-injections042091.icu
*.india.womensaflstars.com
*.random.womensaflstars.com
womensaflstars.com
*.womensaflstars.com
Other domains in certificate