Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=zhufudaquan.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 27, 2026
Valid Until
August 25, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C4:7F:1B:F5:5B:29:F0:F0:5D:42:61:BA:F2:E2:00:B4:05:B0:D8:48:92:2C:64:90:3C:19:FE:CE:26:41:12:D4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
gymrow.com
*.gymrow.com
*.autodiscover.gymrow.com
*.mx.gymrow.com
acerosyaluminios.co
*.acerosyaluminios.co
*.en.acerosyaluminios.co
*.ci.cpeeasy.com
*.cicd.cpeeasy.com
cpeeasy.com
*.cpeeasy.com
*.development.cpeeasy.com
*.jenkins.cpeeasy.com
*.m.cpeeasy.com
*.outmail.cpeeasy.com
*.pipeline.cpeeasy.com
*.sandbox.cpeeasy.com
*.uat.cpeeasy.com
*.ww1.cpeeasy.com
datafor.co
*.datafor.co
*.www.datafor.co
*.comune.game-pg5.vip
game-pg5.vip
*.game-pg5.vip
*.test.game-pg5.vip
ina.house
*.ina.house
minhasencomenndas.online
*.minhasencomenndas.online
northdata.co
*.northdata.co
*.sitemap.northdata.co
*.www.northdata.co
schooltwinning.com
*.schooltwinning.com
sftserve.com
*.sftserve.com
ssfloorsvannuys.com
*.ssfloorsvannuys.com
streetsbest.com
*.streetsbest.com
sweetwelcome.com
*.sweetwelcome.com
*.admin.tastingslive.com
*.api.tastingslive.com
*.app.tastingslive.com
*.backend.tastingslive.com
*.demo.tastingslive.com
*.dev.tastingslive.com
*.ebay.tastingslive.com
*.help.tastingslive.com
*.home.tastingslive.com
*.login.tastingslive.com
*.m.tastingslive.com
*.mobile.tastingslive.com
*.news.tastingslive.com
*.portal.tastingslive.com
*.secure.tastingslive.com
*.staging.tastingslive.com
tastingslive.com
*.tastingslive.com
*.test.tastingslive.com
*.testing.tastingslive.com
*.vpn.tastingslive.com
*.wap.tastingslive.com
*.web.tastingslive.com
*.wildcard.tastingslive.com
*.www.tastingslive.com
*.mail.thelinkscondoapts.com
thelinkscondoapts.com
*.thelinkscondoapts.com
*.ww25.thelinkscondoapts.com
*.ww38.thelinkscondoapts.com
tuwas.coach
*.tuwas.coach
*.7p1gdf.zhufudaquan.com
*.86dk58.zhufudaquan.com
*.azbgxg.zhufudaquan.com
*.b8lgz9.zhufudaquan.com
*.evspce.zhufudaquan.com
*.inhzsq.zhufudaquan.com
*.ms7w3t.zhufudaquan.com
*.sp7md5.zhufudaquan.com
*.spudc7.zhufudaquan.com
*.wlidwe.zhufudaquan.com
*.xpb9vb.zhufudaquan.com
*.yz8dj.zhufudaquan.com
zhufudaquan.com
*.zhufudaquan.com
Other domains in certificate