Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=plotstops.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 06, 2026
Valid Until
August 04, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A9:16:29:B3:6F:66:3A:B1:5A:42:59:D9:CC:5F:5B:76:C3:42:83:A1:61:19:00:42:7B:31:DE:52:2E:6D:9E:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
87 domains
hpbvtv.com
*.hpbvtv.com
*.0vpn.hpbvtv.com
*.26px.hpbvtv.com
*.alumni.hpbvtv.com
*.be.hpbvtv.com
*.bursar.hpbvtv.com
*.ca.hpbvtv.com
*.go.hpbvtv.com
*.lu.hpbvtv.com
*.lwgj.hpbvtv.com
*.mvbjpo0a.hpbvtv.com
*.newark.hpbvtv.com
*.pulse.hpbvtv.com
*.trinity.hpbvtv.com
*.web-sitemap.hpbvtv.com
*.workforce.hpbvtv.com
*.xm.hpbvtv.com
aiairdroper.click
*.aiairdroper.click
*.ww38.aiairdroper.click
betrupi418.com
*.betrupi418.com
*.mail.betrupi418.com
*.block.brushconduct.site
brushconduct.site
*.brushconduct.site
*.crime.brushconduct.site
*.curdstrips.brushconduct.site
*.increase.brushconduct.site
*.lifetime.brushconduct.site
*.painful.brushconduct.site
*.private.brushconduct.site
*.salad.brushconduct.site
*.stretch.brushconduct.site
*.term.brushconduct.site
*.voter.brushconduct.site
*.ww1.brushconduct.site
*.ww25.brushconduct.site
epayitoonline.com
*.epayitoonline.com
gerlach.au
*.gerlach.au
jdace.live
*.jdace.live
*.ww38.jdace.live
juditcuisine.com
*.juditcuisine.com
libelula777.bet
*.libelula777.bet
*.ww38.libelula777.bet
*.dev.modaautunnoinverno.com
modaautunnoinverno.com
*.modaautunnoinverno.com
*.ww42.modaautunnoinverno.com
*.www.modaautunnoinverno.com
*.betazu.monorewards101.com
*.bidi.monorewards101.com
*.juhi.monorewards101.com
*.kose.monorewards101.com
*.lumo.monorewards101.com
monorewards101.com
*.monorewards101.com
*.nitoza.monorewards101.com
*.noxuri.monorewards101.com
*.pare.monorewards101.com
*.resu.monorewards101.com
*.robo.monorewards101.com
*.wiyo.monorewards101.com
mypamperdpuppy.com
*.mypamperdpuppy.com
*.ws.mypamperdpuppy.com
*.ww25.mypamperdpuppy.com
*.ww38.mypamperdpuppy.com
*.admin.plotstops.xyz
*.aging.plotstops.xyz
*.auth.plotstops.xyz
*.crm.plotstops.xyz
*.dev.plotstops.xyz
*.hermes.plotstops.xyz
*.mailx.plotstops.xyz
*.odrwumailx.plotstops.xyz
plotstops.xyz
*.plotstops.xyz
webhhok.site
*.webhhok.site
*.ww38.webhhok.site
Other domains in certificate