Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=34486.one
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 23, 2026
Valid Until
July 22, 2026
64 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4D:9E:67:5D:4D:5E:45:89:0A:CB:0B:C7:F2:66:41:D8:94:03:B2:64:54:0C:44:E1:5C:51:68:F8:2E:A2:74:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
zs7262.com
*.zs7262.com
*.remote.zs7262.com
*.rustore.zs7262.com
*.testing.zs7262.com
34383.one
*.34383.one
34486.one
*.34486.one
37137.one
*.37137.one
37534.one
*.37534.one
38x0.cc
*.38x0.cc
39750.one
*.39750.one
4gz7.cc
*.4gz7.cc
55927.one
*.55927.one
59512.one
*.59512.one
59899.one
*.59899.one
793953.top
*.793953.top
88606.toys
*.88606.toys
8bkx.cc
*.8bkx.cc
accelerateimpulselabs.xyz
*.accelerateimpulselabs.xyz
casasenventaya.sbs
*.casasenventaya.sbs
catalysefusionapp.xyz
*.catalysefusionapp.xyz
dermacotonebypellino.com
*.dermacotonebypellino.com
deutschereinigung.com
*.deutschereinigung.com
diverserealtytechlabs.com
*.diverserealtytechlabs.com
diversetechrealtyhq.com
*.diversetechrealtyhq.com
*.cpcalendars.mdesignarad.com
*.cpcontacts.mdesignarad.com
mdesignarad.com
*.mdesignarad.com
*.test.mdesignarad.com
*.test1.mdesignarad.com
*.test3.mdesignarad.com
*.webmail.mdesignarad.com
*.cpanel.sayed.me
*.cpcalendars.sayed.me
*.karna.sayed.me
*.mail.sayed.me
*.radio.sayed.me
sayed.me
*.sayed.me
*.shop.sayed.me
*.sitemaps.sayed.me
*.thoda.sayed.me
*.to.sayed.me
*.ye.sayed.me
stock-market-quotes.click
*.stock-market-quotes.click
w13727327.com
*.w13727327.com
w13728406.com
*.w13728406.com
*.api.webpagedevsite.info
*.dev.webpagedevsite.info
*.eseyka.webpagedevsite.info
webpagedevsite.info
*.webpagedevsite.info
*.magento.wellsfrgodealerservices.com
wellsfrgodealerservices.com
*.wellsfrgodealerservices.com
xoolu.solutions
*.xoolu.solutions
yfnfn.cc
*.yfnfn.cc
ymentech.com
*.ymentech.com
*.testing.zeno.ad
zeno.ad
*.zeno.ad
zlos.shop
*.zlos.shop
Other domains in certificate