Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=belezapg.bet
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 01, 2026
Valid Until
July 30, 2026 68 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:6D:F5:96:AF:7E:76:6C:44:10:47:31:B2:DE:ED:25:38:8A:AF:94:D7:55:52:70:01:C6:4B:D1:F7:24:3C:D0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
fort7.studio *.fort7.studio

Other domains in certificate

anuone.com *.anuone.com *.egomcr.anuone.com
belezapg.bet *.belezapg.bet
bernisemountaindog.com *.bernisemountaindog.com
*.3657.chunkao360.com *.3w.chunkao360.com *.8li.chunkao360.com chunkao360.com *.chunkao360.com *.dns.chunkao360.com *.q1y.chunkao360.com *.ujgd.chunkao360.com *.ys.chunkao360.com *.zolw.chunkao360.com
cosmeticdermatology.com.au *.cosmeticdermatology.com.au
*.api.edudecisions.com edudecisions.com *.edudecisions.com
*.a.fullcovered.info *.admin.fullcovered.info *.api.fullcovered.info *.assets.fullcovered.info *.dev.fullcovered.info fullcovered.info *.fullcovered.info *.test.fullcovered.info *.www.fullcovered.info *.yjjcltest.fullcovered.info
galaxyrocks.com *.galaxyrocks.com *.mx.galaxyrocks.com *.www.galaxyrocks.com
gaytravel.com.au *.gaytravel.com.au
*.ebay.itlaki.com itlaki.com *.itlaki.com *.mx7.itlaki.com
megaf.cc *.megaf.cc *.qkrq.megaf.cc *.yodq.megaf.cc *.yvly.megaf.cc
*.api.montefranco.com *.demo.montefranco.com montefranco.com *.montefranco.com *.remote.montefranco.com
*.app.mountbots.io mountbots.io *.mountbots.io *.staging.mountbots.io *.test.mountbots.io
*.home.tryaudit.co *.test.tryaudit.co tryaudit.co *.tryaudit.co
uhcstock.com *.uhcstock.com
victoriancharm.info *.victoriancharm.info *.ww25.victoriancharm.info
whistle.design *.whistle.design *.www.whistle.design
*.api.zicarelli.com *.dev.zicarelli.com *.mail.zicarelli.com *.owa.zicarelli.com *.sitemaps.zicarelli.com *.test.zicarelli.com *.ww11.zicarelli.com *.ww16.zicarelli.com *.ww17.zicarelli.com *.ww25.zicarelli.com *.ww38.zicarelli.com *.ww5.zicarelli.com zicarelli.com *.zicarelli.com
*.admin.zkpshop.com *.andromeda.zkpshop.com *.m.zkpshop.com zkpshop.com *.zkpshop.com