76/100 SECURITY SCORE

Certificate Information

Subject
CN=mysterious-world.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 23, 2026
Valid Until
July 22, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DA:8D:24:D8:C6:A5:FD:B0:71:B2:84:12:73:76:E8:EC:E3:C4:D1:65:4B:3A:56:82:E5:3B:77:81:D8:19:7B:0D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
coreografie.it *.coreografie.it *.admin.coreografie.it *.analyze.coreografie.it *.chart.coreografie.it *.forecast.coreografie.it *.hostmaster.coreografie.it *.stats.coreografie.it

Other domains in certificate

360fish.cn *.360fish.cn *.aw.360fish.cn *.chyj.360fish.cn
74129.reviews *.74129.reviews *.admin.74129.reviews *.assets.74129.reviews *.d26edd75-86a6-4cfc-b6dd-f2ba3d687b03.74129.reviews *.members.74129.reviews
*.admin.antennagps.it antennagps.it *.antennagps.it *.api.antennagps.it *.app.antennagps.it *.backend.antennagps.it *.dashboard.antennagps.it *.demo.antennagps.it *.dev.antennagps.it *.mail.antennagps.it *.owa.antennagps.it *.superset.antennagps.it
bilgikaynak.info *.bilgikaynak.info *.pay.bilgikaynak.info *.sitemap.bilgikaynak.info *.webshop.bilgikaynak.info *.werkenbij.bilgikaynak.info
bmbank.pl *.bmbank.pl *.pl17.bmbank.pl *.ww25.bmbank.pl
*.admin.cheapefare.com *.app.cheapefare.com *.backup.cheapefare.com cheapefare.com *.cheapefare.com *.forum.cheapefare.com *.new.cheapefare.com *.remote.cheapefare.com *.temp.cheapefare.com
curtinchildlearningcenter.org *.curtinchildlearningcenter.org *.update.curtinchildlearningcenter.org
*.72b8befa-3240-41f6-bcf2-e85fc3c923cc.eurolapdance.eu *.asa.eurolapdance.eu *.backup.eurolapdance.eu *.buy.eurolapdance.eu *.cpanel.eurolapdance.eu *.dev.eurolapdance.eu eurolapdance.eu *.eurolapdance.eu *.ftp.eurolapdance.eu *.grafana.eurolapdance.eu *.mail.eurolapdance.eu *.mijn.eurolapdance.eu *.mx1.eurolapdance.eu *.qa.eurolapdance.eu *.secure.eurolapdance.eu *.smtp.eurolapdance.eu *.stg.eurolapdance.eu *.tgtiesmtp.eurolapdance.eu *.uat.eurolapdance.eu *.v1.eurolapdance.eu *.v2.eurolapdance.eu *.vpn.eurolapdance.eu *.w6lqxyxxxa.eurolapdance.eu *.webmail.eurolapdance.eu *.www.eurolapdance.eu
*.forum.mysterious-world.online mysterious-world.online *.mysterious-world.online
*.new1.nycablingsolutions.com nycablingsolutions.com *.nycablingsolutions.com
*.sitemap.theuntoldstories.org theuntoldstories.org *.theuntoldstories.org
*.mx.weblight.co weblight.co *.weblight.co *.www.weblight.co