Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=antiquehouse.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 02, 2026
Valid Until
July 31, 2026
52 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A2:89:2F:7C:2F:91:CE:5D:C3:B0:4E:2E:A9:B3:49:1D:26:5A:B0:CF:3F:6C:5A:48:3B:3A:67:93:65:44:60:7E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
yvthfk.com
*.yvthfk.com
188jili.baby
*.188jili.baby
305962.town
*.305962.town
36724.me
*.36724.me
60109.locker
*.60109.locker
670450.blog
*.670450.blog
69587.blog
*.69587.blog
712651.cc
*.712651.cc
767145.co
*.767145.co
81723.blog
*.81723.blog
83754.co
*.83754.co
85108.one
*.85108.one
86434.ac
*.86434.ac
92399.my
*.92399.my
93460.net
*.93460.net
960618.co
*.960618.co
99278.co
*.99278.co
a79h.cyou
*.a79h.cyou
acbtfhbyfcgjkhgtphve.com
*.acbtfhbyfcgjkhgtphve.com
antiquehouse.org
*.antiquehouse.org
avbudr.com
*.avbudr.com
balancedtrendhub.sbs
*.balancedtrendhub.sbs
batikai.com
*.batikai.com
bcdoe.app
*.bcdoe.app
bestrestaurants.in
*.bestrestaurants.in
bingoplus.baby
*.bingoplus.baby
brightconnectspace.sbs
*.brightconnectspace.sbs
cntrctr.tech
*.cntrctr.tech
craftoverchemistry.com
*.craftoverchemistry.com
cyber-security-ch-824y2.shop
*.cyber-security-ch-824y2.shop
ecomtaskhub.com
*.ecomtaskhub.com
elevatorslabs.com
*.elevatorslabs.com
eromass.com
*.eromass.com
ffadvanceserver.pro
*.ffadvanceserver.pro
grow-pndigital.com
*.grow-pndigital.com
harporhynchus.info
*.harporhynchus.info
hashkey71101.com
*.hashkey71101.com
hdoboxs.com
*.hdoboxs.com
holistictx.com
*.holistictx.com
smartlinkcloud.click
*.smartlinkcloud.click
super888.baby
*.super888.baby
vertexzone659.info
*.vertexzone659.info
ylkpu.gdn
*.ylkpu.gdn
ylmol.gdn
*.ylmol.gdn
ysav163.xyz
*.ysav163.xyz
Other domains in certificate