76/100 SECURITY SCORE

Certificate Information

Subject
CN=78gg.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026 79 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
86:61:AE:17:48:F1:A5:C3:14:56:FE:00:87:D7:F1:E9:7A:54:7E:7B:CD:60:4D:3C:A8:A3:D7:7A:75:6B:90:12
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
hawp.com *.hawp.com *.rma.hawp.com

Other domains in certificate

55win5.com *.55win5.com *.ww25.55win5.com
78gg.shop *.78gg.shop *.eptdc.78gg.shop *.mb8t5k.78gg.shop *.ts4apa3f.78gg.shop *.xoyrb9.78gg.shop
8822.live *.8822.live *.ww25.8822.live
acka.net *.acka.net *.ww1.acka.net
aircondition.com.au *.aircondition.com.au *.ww25.aircondition.com.au *.ww31.aircondition.com.au
airsurf.com.au *.airsurf.com.au *.random.airsurf.com.au *.ww25.airsurf.com.au
belbras.com *.belbras.com *.rmfjevpn.belbras.com *.test.belbras.com
*.apple-us.com-auth-id-78723468.com *.appleeid-apple-us.com-auth-id-78723468.com *.appleeid-appleeus.com-auth-id-78723468.com *.appleeus.com-auth-id-78723468.com *.appleeusverf.com-auth-id-78723468.com *.appleeusvrf.com-auth-id-78723468.com *.appleeusvrfc.com-auth-id-78723468.com *.appleid-appleeusvfy.com-auth-id-78723468.com *.appleus.com-auth-id-78723468.com *.appleusvrf.com-auth-id-78723468.com com-auth-id-78723468.com *.com-auth-id-78723468.com *.cons.com-auth-id-78723468.com *.continue.com-auth-id-78723468.com *.login-xfnity.com-auth-id-78723468.com *.logn-xfnity.com-auth-id-78723468.com *.scure-login-xfnity.com-auth-id-78723468.com *.secure-login-amzon.com-auth-id-78723468.com *.secure-login-xfnity.com-auth-id-78723468.com *.ww25.com-auth-id-78723468.com *.ww38.com-auth-id-78723468.com
corebridefinancial.com *.corebridefinancial.com
*.cn.ee444ee.com *.com.ee444ee.com *.comwww.ee444ee.com ee444ee.com *.ee444ee.com *.ww38.ee444ee.com
gfosknowncloud.com *.gfosknowncloud.com
*.hotfix.jadoocinema.store jadoocinema.store *.jadoocinema.store *.nolvadex.jadoocinema.store *.venlor.jadoocinema.store *.viagra.jadoocinema.store
make.st *.make.st *.test-grape.make.st *.test-sable.make.st *.test.make.st *.voicesbigcountry-oleg.make.st *.yanao2.make.st
*.bernard-singer.notaires.com *.chassaint-cercle.notaires.com notaires.com *.notaires.com *.olivier-pernes.notaires.com *.paris.notaires.com
*.brasil-store.tommorrowland.com *.globaljourney.tommorrowland.com *.my.tommorrowland.com *.prod.tommorrowland.com *.thailand.tommorrowland.com tommorrowland.com *.tommorrowland.com
topnails818.com *.topnails818.com *.ww25.topnails818.com