76/100 SECURITY SCORE

Certificate Information

Subject
CN=bludovecvek.eu
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 10, 2026
Valid Until
August 08, 2026 78 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
72:C9:DD:4D:82:9F:6C:E8:C4:D4:06:6A:50:26:AD:C7:D1:31:C3:A2:AC:92:22:35:69:01:0A:4D:AE:EC:83:A6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

81 domains
mailtrail.us *.mailtrail.us *.admin.mailtrail.us *.module.mailtrail.us

Other domains in certificate

bludovecvek.eu *.bludovecvek.eu
*.690cfb960aad.captchaclub.net captchaclub.net *.captchaclub.net *.cpanel.captchaclub.net *.webmail.captchaclub.net *.ww25.captchaclub.net *.ww38.captchaclub.net
celulares.click *.celulares.click *.computadores.celulares.click *.midespensafit.celulares.click *.portatiles.celulares.click *.webmail.celulares.click
dekueatsmeat.com *.dekueatsmeat.com *.h9xfco4f7f.dekueatsmeat.com *.ww25.dekueatsmeat.com
*.clickww38.gamesapp.click gamesapp.click *.gamesapp.click *.ww38.gamesapp.click
gamescodegift.store *.gamescodegift.store *.ww38.gamescodegift.store
jetblue.au *.jetblue.au *.ww16.jetblue.au *.ww25.jetblue.au
luistertest.com *.luistertest.com *.sports.luistertest.com
newbuffetbuffetmacon.com *.newbuffetbuffetmacon.com
registersecurly.co.uk *.registersecurly.co.uk
*.apk.remini.pro remini.pro *.remini.pro *.ww38.remini.pro
resultadodaalianca.online *.resultadodaalianca.online *.www.resultadodaalianca.online
*.amp.selcuksportshdamp10.xyz *.api.selcuksportshdamp10.xyz selcuksportshdamp10.xyz *.selcuksportshdamp10.xyz
sessionsgirls.com *.sessionsgirls.com
sms2233.com *.sms2233.com *.ww25.sms2233.com *.ww38.sms2233.com
socialimoveisjaru.com *.socialimoveisjaru.com *.ww38.socialimoveisjaru.com
*.random.switchtoyoutube.com switchtoyoutube.com *.switchtoyoutube.com
taniemagazynyenergii.pl *.taniemagazynyenergii.pl *.ww16.taniemagazynyenergii.pl *.ww25.taniemagazynyenergii.pl *.ww38.taniemagazynyenergii.pl
trivonar.pro *.trivonar.pro *.ww38.trivonar.pro
vino.studio *.vino.studio
*.doctor-george-ajijic.xcelero.cfd *.sumtotal-doe.xcelero.cfd *.utklippan-fyr.xcelero.cfd xcelero.cfd *.xcelero.cfd
yfztech.com *.yfztech.com