76/100 SECURITY SCORE

Certificate Information

Subject
CN=bakerscaffolding.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 03, 2026
Valid Until
September 01, 2026 73 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B4:78:41:D5:47:5A:51:5E:1A:6E:83:6C:8C:9E:9B:21:37:23:04:AA:42:4B:17:DE:D8:E0:F0:CD:63:1A:D7:C0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
mpwn.net *.mpwn.net

Other domains in certificate

bakerscaffolding.com *.bakerscaffolding.com
barriletekindergarten.com *.barriletekindergarten.com
bergerslake.com *.bergerslake.com
bidetuse.com *.bidetuse.com
bitfinance.io *.bitfinance.io
budique.com *.budique.com
buscarparejasliberales.net *.buscarparejasliberales.net
bx5acg.info *.bx5acg.info
*.assets.galapowfer.com *.backup.galapowfer.com *.demo.galapowfer.com galapowfer.com *.galapowfer.com *.staging.galapowfer.com *.test.galapowfer.com *.tmuguapp.galapowfer.com *.uat.galapowfer.com
miya1183.cn *.miya1183.cn
mjyncm.com *.mjyncm.com
mxckf12gwrzzr3jn1jpkru0y.club *.mxckf12gwrzzr3jn1jpkru0y.club
notebook-today-br02.today *.notebook-today-br02.today
nudegirlspornphoto.com *.nudegirlspornphoto.com
*.anptyvef.usevida.info *.app.usevida.info *.banzgwkh.usevida.info *.bclumakw.usevida.info *.birvhudf.usevida.info *.demo.usevida.info *.dtzcnvso.usevida.info *.dzuefjwh.usevida.info *.ejpxksth.usevida.info *.emiqjdfo.usevida.info *.emkrgipn.usevida.info *.erpfonbg.usevida.info *.fbmqpzte.usevida.info *.fhgtcids.usevida.info *.flpvcore.usevida.info *.frxcyblp.usevida.info *.gfvpjtom.usevida.info *.hgvioamq.usevida.info *.hp7vs6.usevida.info *.hvcjnpem.usevida.info *.ijttojxghaoku.usevida.info *.jgivrnfk.usevida.info *.jxghaoku.usevida.info *.korjcthw.usevida.info *.krbcpwat.usevida.info *.ktsjwped.usevida.info *.lsbivczr.usevida.info *.mcvrtgew.usevida.info *.oypilxkb.usevida.info *.qhzpkmyr.usevida.info *.qjmrsniz.usevida.info *.rqlvojph.usevida.info *.seijxbya.usevida.info *.server.usevida.info *.sfedltiy.usevida.info *.shop.usevida.info *.svjdwgyp.usevida.info *.tynfjvhu.usevida.info *.uizotdnp.usevida.info usevida.info *.usevida.info *.uxgchjwadnflv.usevida.info *.vlyarwpo.usevida.info *.vps.usevida.info *.xbdaofst.usevida.info *.yeqpucvt.usevida.info *.yofepkli.usevida.info *.zavospmf.usevida.info *.zbqwrsau.usevida.info *.zfhgjbkl.usevida.info *.zlhqbsie.usevida.info