Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=duplicatesite.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 12, 2026
Valid Until
April 12, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:62:66:2A:AB:34:11:7F:E9:EB:D4:B6:67:04:17:1F:41:9A:F2:B3:A1:D5:DA:66:CF:40:6C:97:60:B7:BD:83
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
binaric.org
*.binaric.org
*.cvtr.binaric.org
*.demo-de-0.binaric.org
*.demo-p1-dc0.binaric.org
*.dev-refactor-profile.binaric.org
*.dev-test-platform.binaric.org
*.dev-touch-close-cond.binaric.org
*.dev.binaric.org
*.mysql-master-ffx-0.binaric.org
*.partner.binaric.org
*.secure-dev-api-formdata-validate-24333.binaric.org
*.st01.binaric.org
*.st04.binaric.org
*.std.binaric.org
*.vtr.binaric.org
*.web.binaric.org
*.widget.binaric.org
*.wl.binaric.org
*.www.binaric.org
*.zbx.binaric.org
analxx.com
*.analxx.com
*.photos.analxx.com
cinecomplet.com
*.cinecomplet.com
*.mx.cinecomplet.com
*.pows.cinecomplet.com
*.ww25.cinecomplet.com
*.ww38.cinecomplet.com
*.blog.cobaltcable.com
cobaltcable.com
*.cobaltcable.com
*.poc.cobaltcable.com
duplicatesite.xyz
*.duplicatesite.xyz
*.webdisk.duplicatesite.xyz
*.whm.duplicatesite.xyz
fednow.digital
*.fednow.digital
*.ww25.fednow.digital
goodneighborschdv.org
*.goodneighborschdv.org
*.m.goodneighborschdv.org
*.random.goodneighborschdv.org
*.ww2.goodneighborschdv.org
*.good.grace-dawn.info
grace-dawn.info
*.grace-dawn.info
*.next.grace-dawn.info
*.page.grace-dawn.info
*.site.grace-dawn.info
*.sky.grace-dawn.info
*.up.grace-dawn.info
*.www.grace-dawn.info
*.demo.javerave.club
*.ee8ac0a7-c4d0-4b49-9276-74451e9bedc3.javerave.club
javerave.club
*.javerave.club
*.shop.javerave.club
*.store.javerave.club
*.superset.javerave.club
*.test.javerave.club
*.wildcard.javerave.club
*.ww38.javerave.club
*.6vi38s2zkik6ywgi.jaydenquaintance.site
*.insight.jaydenquaintance.site
jaydenquaintance.site
*.jaydenquaintance.site
*.mx20.jaydenquaintance.site
*.smtp3.jaydenquaintance.site
*.sniper.jaydenquaintance.site
*.wildcard.jaydenquaintance.site
*.5fff36ad-f2af-4b59-bbe7-afa27baacac9.kilns.pro
*.buyxscpanel.kilns.pro
*.cpcalendars.kilns.pro
*.cpcontacts.kilns.pro
kilns.pro
*.kilns.pro
*.status.kilns.pro
*.www.kilns.pro
*.mail.pointel.xyz
*.outgoing.pointel.xyz
*.owa.pointel.xyz
pointel.xyz
*.pointel.xyz
*.ww38.pointel.xyz
toxwap.com
*.toxwap.com
*.ww25.toxwap.com
Other domains in certificate