Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=souq.pw
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 27, 2026
Valid Until
April 27, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2F:C3:E3:D0:F6:41:96:C4:C7:08:4F:98:5B:71:C4:D9:D2:DB:7A:17:DE:3E:6E:66:74:16:AD:83:28:B7:92:64
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

79 domains
wangbin.io *.wangbin.io

Other domains in certificate

alfonsos.site *.alfonsos.site *.oevuhww38.alfonsos.site
asian4dsolid.com *.asian4dsolid.com
bengalgrillsurrey.com *.bengalgrillsurrey.com
caixa.ltd *.caixa.ltd *.ns1.caixa.ltd *.resolver.caixa.ltd
chunky.studio *.chunky.studio
cloutclient.xyz *.cloutclient.xyz
coffemate.com *.coffemate.com
conselhodosdetetivescfdp.com.br *.conselhodosdetetivescfdp.com.br *.ww38.conselhodosdetetivescfdp.com.br
diqloginc.com *.diqloginc.com
erbstg.de *.erbstg.de
extensions.co.za *.extensions.co.za
facturacionpetromayab.net *.facturacionpetromayab.net *.ww16.facturacionpetromayab.net *.ww25.facturacionpetromayab.net
*.amr.fox44abc22yourvoice.com fox44abc22yourvoice.com *.fox44abc22yourvoice.com *.ww16.fox44abc22yourvoice.com
gastronomy.co.za *.gastronomy.co.za
inskt.co *.inskt.co
kathrynstriplingbyer.com *.kathrynstriplingbyer.com
missaboxe.online *.missaboxe.online
sexygames.com.au *.sexygames.com.au
souq.pw *.souq.pw
*.ch.starragheckert.com *.de.starragheckert.com *.mail.starragheckert.com starragheckert.com *.starragheckert.com
streamm4u.io *.streamm4u.io
tablets.life *.tablets.life
*.alpha.thevenue-wells.co.uk *.random.thevenue-wells.co.uk *.sandbox.thevenue-wells.co.uk thevenue-wells.co.uk *.thevenue-wells.co.uk *.ww38.thevenue-wells.co.uk
tlinkmodem.net *.tlinkmodem.net
ttokyomotion.net *.ttokyomotion.net
vocaloid.io *.vocaloid.io
wwwdiscoveryplus.com *.wwwdiscoveryplus.com
xn--cholsure-4za.de *.xn--cholsure-4za.de
xn--heilrkuter-v5a.de *.xn--heilrkuter-v5a.de
xn-firstrowsport-8xe.eu *.xn-firstrowsport-8xe.eu
xxz.de *.xxz.de