Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=waner2.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 21, 2026
Valid Until
August 19, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:7A:FA:7D:7A:48:DD:13:F9:55:40:60:B0:B4:43:C4:2C:87:C3:93:33:56:AE:C2:22:6C:0F:45:45:B8:DA:18
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
waner2.top
*.waner2.top
*.31.waner2.top
*.398kce.403247.lol
403247.lol
*.403247.lol
*.aecc.alphapte.com
alphapte.com
*.alphapte.com
*.asian.alphapte.com
*.com.alphapte.com
*.expertlalitpur.alphapte.com
*.expertpotal.alphapte.com
*.forever.alphapte.com
*.ir.alphapte.com
*.next.alphapte.com
*.nextportal.alphapte.com
*.poral.alphapte.com
*.port.alphapte.com
*.portal.alphapte.com
*.portat.alphapte.com
*.portel.alphapte.com
*.portial.alphapte.com
*.porto.alphapte.com
*.portocal.alphapte.com
*.portol.alphapte.com
*.portral.alphapte.com
*.potal.alphapte.com
*.potral.alphapte.com
*.protal.alphapte.com
*.protocal.alphapte.com
*.protol.alphapte.com
*.prtal.alphapte.com
*.random.alphapte.com
*.webdesign.alphapte.com
*.ww25.alphapte.com
*.2j46sx.game2card.tips
game2card.tips
*.game2card.tips
*.www.game2card.tips
*.8hy5t.genuinejourney.xyz
genuinejourney.xyz
*.genuinejourney.xyz
*.319vwq.haspengouw.com
haspengouw.com
*.haspengouw.com
*.2m2pt9.hexrat.watch
*.api.hexrat.watch
*.app.hexrat.watch
hexrat.watch
*.hexrat.watch
*.api.iamcloud.it
*.bi.iamcloud.it
*.chart.iamcloud.it
iamcloud.it
*.iamcloud.it
*.redash.iamcloud.it
*.smtps.iamcloud.it
*.38.kraken-vk17at.info
*.backend.kraken-vk17at.info
*.demo.kraken-vk17at.info
kraken-vk17at.info
*.kraken-vk17at.info
*.www.kraken-vk17at.info
*.65a3ab2c-9a09-4d81-9be6-06d33d557bcd.prayson.shop
*.app.prayson.shop
*.checkout.prayson.shop
*.demo.prayson.shop
*.mail.prayson.shop
*.mta-sts.prayson.shop
*.pdbqtmta-sts.prayson.shop
*.pktbthvjtgcheckout.prayson.shop
prayson.shop
*.prayson.shop
*.www.xn--fiqr2v7og0k3c.com
xn--fiqr2v7og0k3c.com
*.xn--fiqr2v7og0k3c.com
*.2i103jr.xuxuybzr.cn
*.2i103xzz.xuxuybzr.cn
*.4i103ygp.xuxuybzr.cn
*.9i103izjj.xuxuybzr.cn
xuxuybzr.cn
*.xuxuybzr.cn
*.6y8gt.y5gg6h43mz.xyz
*.89wkp.y5gg6h43mz.xyz
*.95lw2.y5gg6h43mz.xyz
*.cg4o5.y5gg6h43mz.xyz
*.g22y8.y5gg6h43mz.xyz
y5gg6h43mz.xyz
*.y5gg6h43mz.xyz
Other domains in certificate