Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=claudfiare.lat
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 24, 2026
Valid Until
July 23, 2026
52 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AE:AB:F8:21:9F:DA:56:CF:C9:7E:3A:C1:56:B0:C2:6F:82:B6:14:3A:57:88:72:FB:6F:04:95:A7:2A:89:C4:12
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
usloanonline.com
*.usloanonline.com
02470.art
*.02470.art
18677xyjsppp.shop
*.18677xyjsppp.shop
197213.co
*.197213.co
210558.blog
*.210558.blog
4l9poj9brk.cc
*.4l9poj9brk.cc
55555.sbs
*.55555.sbs
5555800adh2.sbs
*.5555800adh2.sbs
5941235580.xyz
*.5941235580.xyz
5959009.xyz
*.5959009.xyz
64cgw.com
*.64cgw.com
9999655adh2.sbs
*.9999655adh2.sbs
aldabraspirits.com
*.aldabraspirits.com
allhomeassets.com
*.allhomeassets.com
claudfiare.lat
*.claudfiare.lat
*.mx.claudfiare.lat
darkmirror.pics
*.darkmirror.pics
dbkmayview.com
*.dbkmayview.com
ddins.cn
*.ddins.cn
fh22041.com
*.fh22041.com
fitimpactsource.club
*.fitimpactsource.club
megapromoday.org
*.megapromoday.org
millenniumclaimsservices.com
*.millenniumclaimsservices.com
payrollintegrity.com
*.payrollintegrity.com
skyrt.plus
*.skyrt.plus
slottica-zercalo.sbs
*.slottica-zercalo.sbs
slowtrack.quest
*.slowtrack.quest
smagents.com
*.smagents.com
smartbitsboost.site
*.smartbitsboost.site
smartdiscounts.org
*.smartdiscounts.org
smartfuturestart24.online
*.smartfuturestart24.online
smartkitalentplanet.co
*.smartkitalentplanet.co
smartselectvacations.xyz
*.smartselectvacations.xyz
solvemysympleloan.com
*.solvemysympleloan.com
sprouted.it.com
*.sprouted.it.com
steadydeliverycompany.it.com
*.steadydeliverycompany.it.com
stewartia.space
*.stewartia.space
technixinc.com
*.technixinc.com
txlawncare.com
*.txlawncare.com
tyxpe.xyz
*.tyxpe.xyz
unlockyoursimpleprice.com
*.unlockyoursimpleprice.com
usekitalentplanet.co
*.usekitalentplanet.co
usesaluscm.pro
*.usesaluscm.pro
useturboclaimai.com
*.useturboclaimai.com
uzgdt.one
*.uzgdt.one
Other domains in certificate