76/100 SECURITY SCORE

Certificate Information

Subject
CN=studiomosaicdata.click
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 13, 2026
Valid Until
May 14, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
26:89:BF:DA:F0:C0:A1:A7:5D:95:98:CF:42:B3:FC:81:EE:4D:4B:84:21:87:D0:2B:95:3D:B2:C3:97:7B:FE:4A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
maededeus.com *.maededeus.com *.access.maededeus.com *.adfs.maededeus.com *.aplicacoes.maededeus.com *.applemail.maededeus.com *.apps.maededeus.com *.authsmtp.maededeus.com *.autodiscover.maededeus.com *.ead.maededeus.com *.gateway.maededeus.com *.m.maededeus.com *.mail.maededeus.com *.medicos.maededeus.com *.mx4.maededeus.com *.rdp.maededeus.com *.rds.maededeus.com *.rdweb.maededeus.com *.remote.maededeus.com *.samara.maededeus.com *.sitemap.maededeus.com *.sitemaps.maededeus.com *.ssl.maededeus.com *.webvpn.maededeus.com *.ww38.maededeus.com *.ww41.maededeus.com

Other domains in certificate

*.americanmilit.arynews.com arynews.com *.arynews.com *.facebook.arynews.com *.live.arynews.com *.ww1.arynews.com *.ww16.arynews.com *.ww25.arynews.com *.www1.arynews.com
bdvkou.com *.bdvkou.com
cxx.rest *.cxx.rest
fp8888.com *.fp8888.com *.www.fp8888.com
*.autoconfig.getmypopcorn.co *.edu.getmypopcorn.co *.forte-autodiscover.getmypopcorn.co getmypopcorn.co *.getmypopcorn.co
grandjp101.net *.grandjp101.net
homeadvisors.it *.homeadvisors.it *.weare.homeadvisors.it
*.admin.jiocoins.help jiocoins.help *.jiocoins.help *.www.jiocoins.help
*.brasil.kerastasesbr.shop kerastasesbr.shop *.kerastasesbr.shop *.obrigado.kerastasesbr.shop *.oficial.kerastasesbr.shop
moonshotstore.money *.moonshotstore.money *.ww16.moonshotstore.money *.ww25.moonshotstore.money
peoriaroadfarmmarket.com *.peoriaroadfarmmarket.com *.www.peoriaroadfarmmarket.com
*.m.prostozmostu.com prostozmostu.com *.prostozmostu.com *.sitemap.prostozmostu.com *.ww38.prostozmostu.com *.www.prostozmostu.com
redapplefirework.com *.redapplefirework.com *.ww1.redapplefirework.com
*.cpcalendars.skillpla.net *.cpcontacts.skillpla.net skillpla.net *.skillpla.net *.webmail.skillpla.net
*.aaeyuadmin.studiomosaicdata.click *.demo.studiomosaicdata.click *.evolution.studiomosaicdata.click *.go.studiomosaicdata.click studiomosaicdata.click *.studiomosaicdata.click
yournerveaid.com *.yournerveaid.com