Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=iapai.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 26, 2026
Valid Until
April 26, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
71:74:62:89:E9:98:33:C5:04:27:43:CD:74:47:57:2D:D7:27:89:E3:CB:DE:A3:9B:04:63:F1:45:DC:25:22:C6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
xn--berin-lua.de
*.xn--berin-lua.de
aligiantair.com
*.aligiantair.com
*.random.aligiantair.com
beleads.com.br
*.beleads.com.br
briefing.au
*.briefing.au
brittney.au
*.brittney.au
*.random.brittney.au
careersysco.com
*.careersysco.com
codeshark.com.au
*.codeshark.com.au
coingames.com
*.coingames.com
*.ww11.coingames.com
*.ww38.coingames.com
designbronco.com
*.designbronco.com
energizelab.com.br
*.energizelab.com.br
ethicalchoices.com
*.ethicalchoices.com
fabrique.com.au
*.fabrique.com.au
*.random.fabrique.com.au
*.computernetnet.gnomino.com
gnomino.com
*.gnomino.com
*.mpmek.gnomino.com
*.nvspkhoacntt24.gnomino.com
*.proftbhaskar.gnomino.com
*.random.gnomino.com
hacg.im
*.hacg.im
*.random.hacg.im
hotlaser.com
*.hotlaser.com
iapai.co
*.iapai.co
*.ftp.mejorpintando.info
mejorpintando.info
*.mejorpintando.info
melbournebusinessconsultants.com.au
*.melbournebusinessconsultants.com.au
mkud.com
*.mkud.com
*.ww38.mkud.com
pilladas.com
*.pilladas.com
plightpath.com
*.plightpath.com
prciew.me
*.prciew.me
*.random.prciew.me
qldplate.au
*.qldplate.au
*.random.qldplate.au
*.junior.redlandafc.com
redlandafc.com
*.redlandafc.com
*.senior.redlandafc.com
regencyspecialities.com
*.regencyspecialities.com
riaucanada.com
*.riaucanada.com
rockbreaking.com.au
*.rockbreaking.com.au
*.cpanel.trivellicakes.com.au
*.mail.trivellicakes.com.au
trivellicakes.com.au
*.trivellicakes.com.au
*.webdisk.trivellicakes.com.au
*.ww38.trivellicakes.com.au
typingagent.org
*.typingagent.org
*.wps.typingagent.org
ultrapetrol.net
*.ultrapetrol.net
*.ww38.ultrapetrol.net
whitewaterinflatable.com
*.whitewaterinflatable.com
yejiling.xyz
*.yejiling.xyz
*.random.znycsgn.cf
znycsgn.cf
*.znycsgn.cf
Other domains in certificate