Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=yachaywasiquito.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 03, 2026
Valid Until
May 04, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C9:E2:16:94:5E:C9:F0:1A:A7:73:3D:10:5F:C4:D1:D7:79:A8:D1:4A:04:38:0B:87:8F:E9:C0:26:E0:3D:3E:6F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
documentinfo.com
*.documentinfo.com
18577.one
*.18577.one
294622.com
*.294622.com
32805.co
*.32805.co
cmpdgmcz.top
*.cmpdgmcz.top
detladentalco.com
*.detladentalco.com
getrickymemes.com
*.getrickymemes.com
korbs.pro
*.korbs.pro
papm.org
*.papm.org
partsgems.com
*.partsgems.com
play-bolt-portal.xyz
*.play-bolt-portal.xyz
prestitiomutui.com
*.prestitiomutui.com
replacing-aortic-282706651.click
*.replacing-aortic-282706651.click
ricaricaelettrica.com
*.ricaricaelettrica.com
ristorantecarne.com
*.ristorantecarne.com
scuoladibase.com
*.scuoladibase.com
shbad.tv
*.shbad.tv
shy5df.top
*.shy5df.top
smartbot.global
*.smartbot.global
sniptravel.com
*.sniptravel.com
spareggi.com
*.spareggi.com
squcoffee.com
*.squcoffee.com
su0ka-ufm2sarh-bn.xyz
*.su0ka-ufm2sarh-bn.xyz
sw777.love
*.sw777.love
syyafo.com
*.syyafo.com
tawakkul.click
*.tawakkul.click
travelsum.com
*.travelsum.com
varelacontractors.com
*.varelacontractors.com
vaytua.com
*.vaytua.com
vendereinrete.com
*.vendereinrete.com
vesponi.com
*.vesponi.com
vragi-naroda.info
*.vragi-naroda.info
vsixue.cn
*.vsixue.cn
waiqec.com
*.waiqec.com
waldatheart.com
*.waldatheart.com
weilijixie.cn
*.weilijixie.cn
wrightonthemoney.com
*.wrightonthemoney.com
xn--fhq763annkm5dd62agn2b.com
*.xn--fhq763annkm5dd62agn2b.com
xn--tp2au91a.com
*.xn--tp2au91a.com
xn--xysv1b.com
*.xn--xysv1b.com
y41db1r.cyou
*.y41db1r.cyou
*.en.yachaywasiquito.com
*.test.yachaywasiquito.com
yachaywasiquito.com
*.yachaywasiquito.com
yeokou.net
*.yeokou.net
zeelec.com
*.zeelec.com
Other domains in certificate