Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=woodworld-bd.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 19, 2026
Valid Until
April 19, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:C2:E6:CC:7C:2B:07:D5:97:5F:A9:91:65:1E:6A:71:EA:55:3D:7B:ED:61:88:06:58:F8:2B:37:BA:F6:92:B2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
80 domains
yonk.io
*.yonk.io
*.ww38.yonk.io
b-m.pw
*.b-m.pw
*.l.b-m.pw
*.ledgetage.b-m.pw
*.pi.b-m.pw
benkei.at
*.benkei.at
*.ww38.benkei.at
cooma.com.au
*.cooma.com.au
dilosh.eu
*.dilosh.eu
fisherpsyschool.store
*.fisherpsyschool.store
fullbright.org
*.fullbright.org
*.ww25.fullbright.org
harboureno.com.au
*.harboureno.com.au
holdas.eu
*.holdas.eu
ilyalazerson.com
*.ilyalazerson.com
*.ww25.ilyalazerson.com
*.dymclinicas.jfla1205.online
jfla1205.online
*.jfla1205.online
*.trendio.jfla1205.online
*.24x7sattamatkaz.kanpurmatka.net
*.cpanel.kanpurmatka.net
kanpurmatka.net
*.kanpurmatka.net
*.mail.kanpurmatka.net
*.webdisk.kanpurmatka.net
ktgames.com.br
*.ktgames.com.br
*.ww38.ktgames.com.br
*.25.letsmakeiteasy.tech
letsmakeiteasy.tech
*.letsmakeiteasy.tech
loteamentomontehermon.com.br
*.loteamentomontehermon.com.br
*.ww38.loteamentomontehermon.com.br
luciferdonghua.io
*.luciferdonghua.io
*.6b96f609-57e9-4037-bb3a-15b8544fe839.mygiftsfor.co.uk
mygiftsfor.co.uk
*.mygiftsfor.co.uk
*.hostmaster.playright.ca
playright.ca
*.playright.ca
pomponette.co
*.pomponette.co
*.ww25.pomponette.co
*.app.racebet.vip
racebet.vip
*.racebet.vip
*.play.rik88.life
rik88.life
*.rik88.life
rue34.us
*.rue34.us
*.ww25.rue34.us
slot20v.bet
*.slot20v.bet
theoryinhindi.online
*.theoryinhindi.online
*.jenkins.wati9a.online
wati9a.online
*.wati9a.online
*.www.wati9a.online
*.access-diba.woodworld-bd.com
woodworld-bd.com
*.woodworld-bd.com
*.ww16.woodworld-bd.com
zammi.eu
*.zammi.eu
Other domains in certificate