Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=exa.guru
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 30, 2025
Valid Until
March 30, 2026 48 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E3:B6:53:3E:47:34:F9:F4:12:45:4A:A9:75:42:1D:6A:44:81:6F:C4:EB:78:24:A1:9B:52:95:A3:3E:90:BB:5E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

87 domains
6tt.co *.6tt.co *.ww25.6tt.co

Other domains in certificate

3xhay.net *.3xhay.net
alaskahouseny.org *.alaskahouseny.org *.webmail.alaskahouseny.org *.ww25.alaskahouseny.org
alce.bet *.alce.bet
catherinefifer.com *.catherinefifer.com
coursecreators.pro *.coursecreators.pro *.mail.coursecreators.pro *.random.coursecreators.pro *.ww38.coursecreators.pro *.www.coursecreators.pro
exa.guru *.exa.guru
farmingequipment.au *.farmingequipment.au
folksjewelry.com *.folksjewelry.com
fqi.de *.fqi.de
gamebansung.net *.gamebansung.net
hkmaps.live *.hkmaps.live
hondaamericanhondafinance.com *.hondaamericanhondafinance.com
mcpemd.net *.mcpemd.net
meek.uk *.meek.uk
mightydeerstalker.co.uk *.mightydeerstalker.co.uk
mtdt.co.uk *.mtdt.co.uk
*.ftp.musicanal24.online musicanal24.online *.musicanal24.online *.www.musicanal24.online
mygenerallife.co.uk *.mygenerallife.co.uk
myterritory.co.uk *.myterritory.co.uk
nefurniturewarehouse.co.uk *.nefurniturewarehouse.co.uk
nessiesdresses.co.uk *.nessiesdresses.co.uk
newadnantikka.co.uk *.newadnantikka.co.uk
plazas.net *.plazas.net
revold.xyz *.revold.xyz
salewedddress.com *.salewedddress.com
sellinghouseprivately.com.au *.sellinghouseprivately.com.au
smartwatchmedellin.com *.smartwatchmedellin.com
soap2daysto.net *.soap2daysto.net
stephnet.net *.stephnet.net
svetlintodd.com *.svetlintodd.com
thebeamstore.co.uk *.thebeamstore.co.uk
theboudingaitcupar.co.uk *.theboudingaitcupar.co.uk
thechippyonburtonroad.co.uk *.thechippyonburtonroad.co.uk
thedogandgunaughton.co.uk *.thedogandgunaughton.co.uk
thehuntsmannewtonaycliffe.co.uk *.thehuntsmannewtonaycliffe.co.uk
thesquirrel-hurtmore.co.uk *.thesquirrel-hurtmore.co.uk
tideblog.uk *.tideblog.uk
unboxin.com.au *.unboxin.com.au