Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=textbee.io
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 01, 2026
Valid Until
July 30, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B4:29:4E:5E:B0:EB:44:53:8C:09:8A:41:72:6F:91:7F:E6:75:5E:2B:B7:99:B8:4B:8B:DA:5C:D4:A9:BC:D4:EC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
educplay.com
*.educplay.com
*.autodiscover.educplay.com
*.cpcalendars.educplay.com
*.es.educplay.com
*.game.educplay.com
*.wildcard.educplay.com
*.ww25.educplay.com
*.argo.bargigia.com
bargigia.com
*.bargigia.com
*.research.bargigia.com
*.visual.bargigia.com
*.aurora.calperscagov.com
calperscagov.com
*.calperscagov.com
*.cicd.calperscagov.com
*.access.cinema21fullmovie.com
cinema21fullmovie.com
*.cinema21fullmovie.com
*.click.cinema21fullmovie.com
*.watch.cinema21fullmovie.com
*.adserver.democrata.com
*.cloud.democrata.com
*.console.democrata.com
democrata.com
*.democrata.com
*.es.democrata.com
*.feedback.democrata.com
*.files.democrata.com
*.gupy.democrata.com
*.m.democrata.com
*.masculinos.democrata.com
*.random.democrata.com
*.sapatos.democrata.com
*.social.democrata.com
*.travel.democrata.com
*.ww25.democrata.com
nagarejeki.shop
*.nagarejeki.shop
*.ww25.nagarejeki.shop
*.ww38.nagarejeki.shop
*.a1.seriyahd.cyou
*.a11.seriyahd.cyou
*.a1l.seriyahd.cyou
*.al1.seriyahd.cyou
*.all.seriyahd.cyou
*.b.seriyahd.cyou
*.blog.seriyahd.cyou
*.c.seriyahd.cyou
*.d.seriyahd.cyou
*.e.seriyahd.cyou
*.h.seriyahd.cyou
*.hd.seriyahd.cyou
*.iftar.seriyahd.cyou
*.members.seriyahd.cyou
*.o.seriyahd.cyou
seriyahd.cyou
*.seriyahd.cyou
*.tv.seriyahd.cyou
*.tw.seriyahd.cyou
*.x.seriyahd.cyou
*.z.seriyahd.cyou
sneaker-authentic.com
*.sneaker-authentic.com
*.ww38.sneaker-authentic.com
tauck.co
*.tauck.co
*.davidsteve.textbee.io
*.dudetakedude.textbee.io
*.ezdoozhair.textbee.io
*.internetmarketingbootcamp.textbee.io
*.irthlingboroughmethodistchurch.textbee.io
*.kitesurfingafrica.textbee.io
*.pettinskykarisa.textbee.io
*.silveremerefitness.textbee.io
*.sundancetv.textbee.io
textbee.io
*.textbee.io
*.traffikendless.textbee.io
tumbet775.com
*.tumbet775.com
*.ww38.tumbet775.com
*.dfdzrww38.ugleakshub.xyz
*.mail.ugleakshub.xyz
*.mx.ugleakshub.xyz
ugleakshub.xyz
*.ugleakshub.xyz
videotechmedia.co.uk
*.videotechmedia.co.uk
Other domains in certificate