76/100 SECURITY SCORE

Certificate Information

Subject
CN=lostadot.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 16, 2026
Valid Until
August 14, 2026 67 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:2E:05:1C:5C:29:6B:95:3A:5D:42:DD:EB:70:48:0D:34:56:FB:A2:CE:B7:92:94:02:00:1F:33:A7:D6:E3:AE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
jokesjakarta.com *.jokesjakarta.com *.admin.jokesjakarta.com *.autoconfig.jokesjakarta.com *.dashboard.jokesjakarta.com *.login.jokesjakarta.com *.nas.jokesjakarta.com *.test.jokesjakarta.com *.ww38.jokesjakarta.com

Other domains in certificate

*.8180a940-94aa-4c67-983e-5ef266a41ed0.azvetin.pro *.api.azvetin.pro *.app.azvetin.pro azvetin.pro *.azvetin.pro *.backup.azvetin.pro *.dev.azvetin.pro *.members.azvetin.pro *.server.azvetin.pro *.staging.azvetin.pro *.test.azvetin.pro *.uat.azvetin.pro *.vcdexstaging.azvetin.pro *.www.azvetin.pro
*.cpanel.ggfministries.org *.cpcalendars.ggfministries.org *.cpcontacts.ggfministries.org *.ftp.ggfministries.org ggfministries.org *.ggfministries.org *.mail.ggfministries.org *.old.ggfministries.org *.sitemaps.ggfministries.org *.test.ggfministries.org *.upgrade.ggfministries.org *.web.ggfministries.org *.webdisk.ggfministries.org *.wwww.ggfministries.org
*.am.gh67.vip *.cao.gh67.vip *.cc.gh67.vip *.cn.gh67.vip *.com.gh67.vip *.con.gh67.vip gh67.vip *.gh67.vip *.host.gh67.vip *.info.gh67.vip *.net.gh67.vip *.top.gh67.vip *.tv.gh67.vip *.tw.gh67.vip *.vip.gh67.vip *.xyz.gh67.vip
*.app.liabilities.my liabilities.my *.liabilities.my *.test.liabilities.my
*.ad2d42e0-8af7-4329-9ed1-e6245a9ed1da.lostadot.com *.admin.lostadot.com *.api.lostadot.com *.app.lostadot.com *.assets.lostadot.com *.demo.lostadot.com *.dev.lostadot.com *.e57d6d7f-fcc8-481f-b0c1-ee2c25697f44.lostadot.com lostadot.com *.lostadot.com *.mail.lostadot.com *.shop.lostadot.com *.test.lostadot.com *.wkivltest.lostadot.com *.www.lostadot.com
*.blog.mostaidesignedmerch.com *.isxokadmin.mostaidesignedmerch.com mostaidesignedmerch.com *.mostaidesignedmerch.com *.yhaxotwmeua.mostaidesignedmerch.com
*.app.vampire.finance *.cce.vampire.finance *.core.vampire.finance *.farm.vampire.finance *.hostmaster.vampire.finance *.ipad.vampire.finance *.remote.vampire.finance *.testapp.vampire.finance vampire.finance *.vampire.finance *.vb.vampire.finance *.www.vampire.finance *.yields.vampire.finance