Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=1a-roof-repairs-7.click
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 18, 2026
Valid Until
August 16, 2026
51 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BF:28:B2:9E:AE:1F:B0:C2:8F:03:E6:8A:C9:74:51:01:DF:44:06:AA:E8:1D:7F:C9:B3:57:BA:92:5B:28:C3:3C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
papystreaming.co
*.papystreaming.co
1a-roof-repairs-7.click
*.1a-roof-repairs-7.click
350k.ag
*.350k.ag
350o.ag
*.350o.ag
521co.cn
*.521co.cn
553523a0.buzz
*.553523a0.buzz
555dy.co
*.555dy.co
5erob47fwxel.cc
*.5erob47fwxel.cc
63695.win
*.63695.win
63702.win
*.63702.win
65268.me
*.65268.me
66162.one
*.66162.one
69723.me
*.69723.me
726961.co
*.726961.co
756932.blog
*.756932.blog
889020.com
*.889020.com
92683.my
*.92683.my
96397.cc
*.96397.cc
97f.xyz
*.97f.xyz
addaevents.com
*.addaevents.com
adoxography.co
*.adoxography.co
airtv.world
*.airtv.world
allnew-gclub.co
*.allnew-gclub.co
alphamegadocumentarions.co
*.alphamegadocumentarions.co
anotepad.co
*.anotepad.co
partylimoseattle.com
*.partylimoseattle.com
pets4homes.co
*.pets4homes.co
phimchon.net
*.phimchon.net
pokerlegendsarena.xyz
*.pokerlegendsarena.xyz
popcornflixx.co
*.popcornflixx.co
ppurl.co
*.ppurl.co
projectjapan.org
*.projectjapan.org
pub-film.co
*.pub-film.co
purehentai.co
*.purehentai.co
quickimpact.org
*.quickimpact.org
r27d.shop
*.r27d.shop
racksterly.co
*.racksterly.co
rawfree.co
*.rawfree.co
readalert.co
*.readalert.co
remitrely.sbs
*.remitrely.sbs
ricoysuave.co
*.ricoysuave.co
rmlsweb.co
*.rmlsweb.co
rocketpages.co
*.rocketpages.co
sahabatbunda.co
*.sahabatbunda.co
sakstream.co
*.sakstream.co
Other domains in certificate