Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=asoass.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 11, 2026
Valid Until
July 10, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
15:4B:02:01:D8:8D:28:62:4A:4B:2F:F1:10:5B:58:62:90:E2:96:76:3A:06:C0:4F:17:F5:1C:50:CB:40:14:35
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
asoass.com
*.asoass.com
*.w.asoass.com
365.name
*.365.name
*.assets.365.name
*.hostmaster.365.name
*.m.365.name
*.sitemap.365.name
*.338tv.39tv.com
39tv.com
*.39tv.com
*.rds.39tv.com
4848116.com
*.4848116.com
*.random.4848116.com
*.rds.4848116.com
50913.locker
*.50913.locker
*.admin.50913.locker
*.api.50913.locker
*.app.50913.locker
*.backup.50913.locker
*.dashboard.50913.locker
*.demo.50913.locker
*.dev.50913.locker
*.docs.50913.locker
*.e1791367-61d3-4850-b87d-c78fb325489f.50913.locker
*.f0e6da91-bf7f-418e-bfb8-69a646f1fbec.50913.locker
*.hr.50913.locker
*.mail.50913.locker
*.mailer.50913.locker
*.portal.50913.locker
*.public.50913.locker
*.qa.50913.locker
*.secure.50913.locker
*.share.50913.locker
*.sharepoint.50913.locker
*.staging.50913.locker
*.stg.50913.locker
*.tdihtdemo.50913.locker
*.test.50913.locker
*.uat.50913.locker
*.v1.50913.locker
*.v2.50913.locker
*.web.50913.locker
*.zcilppublic.50913.locker
*.admin.aeroport.it
aeroport.it
*.aeroport.it
*.aeropuertoelsalvador.aeroport.it
*.backend.aeroport.it
*.cairo-airport.aeroport.it
*.gallatinfield.aeroport.it
*.staging.aeroport.it
*.toulouse.aeroport.it
*.api.armanweb.co
armanweb.co
*.armanweb.co
*.bugzilla.armanweb.co
*.cli.armanweb.co
*.full.armanweb.co
*.webdisk.armanweb.co
*.f.olc.su
*.host1.olc.su
olc.su
*.olc.su
*.old.olc.su
*.porto.olc.su
*.rn.olc.su
*.sib-seti.olc.su
*.srv.olc.su
*.static.olc.su
*.wiki.olc.su
*.cloud.petir138-pp.com
petir138-pp.com
*.petir138-pp.com
*.rd.petir138-pp.com
*.admin.sayang138rtp.homes
*.api.sayang138rtp.homes
*.backend.sayang138rtp.homes
sayang138rtp.homes
*.sayang138rtp.homes
*.app.smaltimentorifiutielettronici.com
*.argo.smaltimentorifiutielettronici.com
smaltimentorifiutielettronici.com
*.smaltimentorifiutielettronici.com
*.superset.smaltimentorifiutielettronici.com
xiaolingcoding.com
*.xiaolingcoding.com
Other domains in certificate