Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sperm-donation-nearby.sbs
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 16, 2026
Valid Until
July 15, 2026
64 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
76:EA:4B:19:C8:54:CF:E7:C9:C8:37:B7:0C:55:29:DB:8A:17:01:C5:06:31:73:EC:B5:67:15:EF:F7:8B:AE:85
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
adsprofile.com
*.adsprofile.com
88278.town
*.88278.town
8888t.bid
*.8888t.bid
96518.mobi
*.96518.mobi
9996.loan
*.9996.loan
9listtrav3l.com
*.9listtrav3l.com
actiontime.org
*.actiontime.org
agconsulting-ci.com
*.agconsulting-ci.com
aitipsandtools.com
*.aitipsandtools.com
ak88betx.bet
*.ak88betx.bet
all-starring.com
*.all-starring.com
allenpark.net
*.allenpark.net
apagentic.com
*.apagentic.com
areabg.net
*.areabg.net
armycareercenter.com
*.armycareercenter.com
artech.cc
*.artech.cc
atozmp3.ws
*.atozmp3.ws
attlasian.com
*.attlasian.com
*.personifyhealth.attlasian.com
bangbet.net
*.bangbet.net
bfqzu.fishing
*.bfqzu.fishing
bjlbwb.cn
*.bjlbwb.cn
bollywoodbuzz.in
*.bollywoodbuzz.in
browneengineering.com
*.browneengineering.com
bursabu.com
*.bursabu.com
bursakarbon.com
*.bursakarbon.com
fitllama.com
*.fitllama.com
fotolognews.com
*.fotolognews.com
freewillstudio.com
*.freewillstudio.com
shearrestoration333.com
*.shearrestoration333.com
skadi-di.com
*.skadi-di.com
sperm-donation-nearby.sbs
*.sperm-donation-nearby.sbs
spotian.com
*.spotian.com
strongintegration.com
*.strongintegration.com
structural-repair2-ww-mb11.click
*.structural-repair2-ww-mb11.click
szrhf.com
*.szrhf.com
taagentic.com
*.taagentic.com
tante-nel.com
*.tante-nel.com
technoincome.com
*.technoincome.com
thailandia.net
*.thailandia.net
theacpprocess.com
*.theacpprocess.com
thebusinesseye.com
*.thebusinesseye.com
thehelpers.org
*.thehelpers.org
thelifemanagement.com
*.thelifemanagement.com
theneurological.com
*.theneurological.com
Other domains in certificate