Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=icaslotmudah.click
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 01, 2026
Valid Until
July 30, 2026
46 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
99:56:28:36:91:0F:53:B0:8B:73:4F:C4:CE:FF:32:CC:0A:20:F6:D3:36:FB:79:FD:96:EA:FD:41:FC:00:27:08
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
splendo.it
*.splendo.it
*.mx.splendo.it
*.visual.splendo.it
*.webmail.splendo.it
*.admin.aftermidnight.it
aftermidnight.it
*.aftermidnight.it
*.backend.aftermidnight.it
*.dev.aftermidnight.it
*.notexistsapi.aftermidnight.it
*.staging.aftermidnight.it
*.superset.aftermidnight.it
*.admin.applicationmobile.it
applicationmobile.it
*.applicationmobile.it
*.demo.applicationmobile.it
cucd.cc
*.cucd.cc
*.ww25.cucd.cc
*.www.cucd.cc
dogeboost.pro
*.dogeboost.pro
*.mailing.dogeboost.pro
domaine-lescure.com
*.domaine-lescure.com
*.ww16.domaine-lescure.com
*.ww25.domaine-lescure.com
fortenite.live
*.fortenite.live
*.pay.fortenite.live
*.confluence.fwblist.com
*.cpcalendars.fwblist.com
fwblist.com
*.fwblist.com
*.vpn.fwblist.com
*.ww25.fwblist.com
gloriafans.com
*.gloriafans.com
*.ww38.gloriafans.com
*.dddd.groovy.bio
groovy.bio
*.groovy.bio
*.random.groovy.bio
*.sitemap.groovy.bio
*.sitemaps.groovy.bio
*.ww38.groovy.bio
*.analytic.hoxtonstreetstudios.co.uk
hoxtonstreetstudios.co.uk
*.hoxtonstreetstudios.co.uk
*.test.hoxtonstreetstudios.co.uk
httpcompraolnine.me
*.httpcompraolnine.me
*.groups.icaslotmudah.click
icaslotmudah.click
*.icaslotmudah.click
kreditschutzversicherung.de
*.kreditschutzversicherung.de
microboss.club
*.microboss.club
moscow.com.au
*.moscow.com.au
myvictozapen.com
*.myvictozapen.com
*.cpanel.parceldeliverylogistics.com
parceldeliverylogistics.com
*.parceldeliverylogistics.com
*.app.payday3mobile.com
payday3mobile.com
*.payday3mobile.com
*.sitemap.payday3mobile.com
*.ww25.payday3mobile.com
*.mx.statefarj.com
*.rustore.statefarj.com
statefarj.com
*.statefarj.com
*.wl2joz.statefarj.com
*.cpcontacts.succulents.life
*.mail.succulents.life
succulents.life
*.succulents.life
*.webdisk.succulents.life
*.autoconfig.tandorostan.org
*.ftp.tandorostan.org
tandorostan.org
*.tandorostan.org
*.blog.wor-ld.com
*.camping.wor-ld.com
wor-ld.com
*.wor-ld.com
Other domains in certificate