76/100 SECURITY SCORE

Certificate Information

Subject
CN=wingede.pro
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 02, 2026
Valid Until
August 31, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
88:84:DC:74:ED:99:3B:06:B1:67:59:46:AD:E3:06:2B:C0:46:EB:16:9C:AA:F0:35:81:E7:20:6D:75:7E:8F:BA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
9-63.live *.9-63.live *.activate.9-63.live *.backend.9-63.live *.docs.9-63.live *.groups.9-63.live *.new.9-63.live *.notexistsautoconfig.9-63.live *.portal.9-63.live *.remote.9-63.live *.static.9-63.live *.www.9-63.live

Other domains in certificate

all18sex.me *.all18sex.me *.wildcard.all18sex.me *.ww38.all18sex.me
*.admin.basetool.sk basetool.sk *.basetool.sk *.llm.basetool.sk *.random.basetool.sk *.ww25.basetool.sk *.ww38.basetool.sk
billionairebandwidth.com *.billionairebandwidth.com *.cloud.billionairebandwidth.com *.m.billionairebandwidth.com
bizzinsights.com *.bizzinsights.com
bodybyplastic.com *.bodybyplastic.com
*.access.donatethechange.org donatethechange.org *.donatethechange.org *.go.donatethechange.org *.webvpn.donatethechange.org
*.32.eotech.shop *.5ad.eotech.shop eotech.shop *.eotech.shop *.ww38.eotech.shop
*.dan.hemptrip.com hemptrip.com *.hemptrip.com
kanelavintage.com *.kanelavintage.com *.ww17.kanelavintage.com
*.dan.manati.net *.forum.manati.net *.m.manati.net manati.net *.manati.net *.mx.manati.net *.notexistsdan.manati.net *.notexistsmx.manati.net *.rds1.manati.net *.remote.manati.net *.ts.manati.net *.www.manati.net
*.backend.monrocasino.info *.demo.monrocasino.info monrocasino.info *.monrocasino.info *.staging.monrocasino.info
*.co.netip-ny.org *.gig.netip-ny.org netip-ny.org *.netip-ny.org *.perfectoclean.netip-ny.org
onlinecasinopromos.top *.onlinecasinopromos.top
*.ey.tyesi.com *.s.tyesi.com tyesi.com *.tyesi.com
*.backup.wingede.pro *.demo.wingede.pro *.dev.wingede.pro *.staging.wingede.pro *.test.wingede.pro *.uat.wingede.pro wingede.pro *.wingede.pro *.www.wingede.pro
*.bot.xr-radius.com *.new.xr-radius.com *.test.xr-radius.com xr-radius.com *.xr-radius.com