Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=viewsofnepal.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:E6:BD:30:80:46:7C:3F:B5:68:06:50:8D:0B:1C:EE:30:D7:FC:C2:6E:BD:50:91:13:00:2A:33:B0:38:31:75
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
winerapp.com
*.winerapp.com
*.blog.winerapp.com
*.dev.winerapp.com
*.djfsgzbw.winerapp.com
*.gateway.winerapp.com
*.home.winerapp.com
*.mail.winerapp.com
*.mobile.winerapp.com
*.news.winerapp.com
*.paul.winerapp.com
*.web.winerapp.com
*.wp.winerapp.com
1153clx301.top
*.1153clx301.top
*.93241f0023.1153clx301.top
*.api.benj.it
benj.it
*.benj.it
*.beta.brimbeat.com
brimbeat.com
*.brimbeat.com
*.extranet.brimbeat.com
*.intranet.brimbeat.com
*.m.brimbeat.com
*.mx1.brimbeat.com
*.web.brimbeat.com
cbc.soccer
*.cbc.soccer
*.www.cbc.soccer
*.bbs.elink.net
elink.net
*.elink.net
*.fernandez.elink.net
*.hotspot.elink.net
*.link.elink.net
*.mcrdc.elink.net
*.prod.elink.net
*.show.elink.net
*.sys.elink.net
*.tynelink.elink.net
*.ww16.elink.net
*.ww2.elink.net
*.ww25.elink.net
gymdays.club
*.gymdays.club
*.ww16.gymdays.club
horn.tv
*.horn.tv
*.mx.horn.tv
*.www.horn.tv
*.2ww.ksbitv.com
*.ask.ksbitv.com
*.citrix.ksbitv.com
*.hostmaster.ksbitv.com
*.imap.ksbitv.com
ksbitv.com
*.ksbitv.com
*.mail.ksbitv.com
*.media.ksbitv.com
*.owa.ksbitv.com
*.random.ksbitv.com
*.sfbw.ksbitv.com
*.sitemap.ksbitv.com
*.sitemaps.ksbitv.com
*.smtp.ksbitv.com
*.stage.ksbitv.com
*.ww25.ksbitv.com
*.ww38.ksbitv.com
*.www.ksbitv.com
*.yjs.ksbitv.com
*.0cb3826c-036a-4564-b79b-421dfcba690e.lumyara.org
*.78c7d2f5-be9b-40b8-8eee-0a65fc69df1e.lumyara.org
*.api.lumyara.org
*.app.lumyara.org
*.dev.lumyara.org
lumyara.org
*.lumyara.org
*.mailin1.lumyara.org
*.new.lumyara.org
*.sitemaps.lumyara.org
*.smtpauth.lumyara.org
*.8kisqc.totoslot138jp.cyou
totoslot138jp.cyou
*.totoslot138jp.cyou
viewsofnepal.com
*.viewsofnepal.com
*.it.xhm.it
xhm.it
*.xhm.it
Other domains in certificate