76/100 SECURITY SCORE

Certificate Information

Subject
CN=maplestory.pro
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
May 28, 2026
Valid Until
August 26, 2026 73 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
00:70:FD:54:27:DA:D6:E9:EF:30:9B:D6:99:E6:11:94:A5:EC:1A:5E:5E:B4:EC:AC:D3:73:6F:CE:CB:D8:36:09
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
mystripvip.com *.mystripvip.com *.admin.mystripvip.com *.jpklvvpnssl.mystripvip.com *.mail.mystripvip.com *.rdp.mystripvip.com *.rds.mystripvip.com *.remoto.mystripvip.com *.shop.mystripvip.com *.whm.mystripvip.com

Other domains in certificate

herinclusive.net *.herinclusive.net *.intranet.herinclusive.net
*.a.manantiales.info *.admin.manantiales.info *.api.manantiales.info *.app.manantiales.info *.assets.manantiales.info *.authsmtp.manantiales.info *.backup.manantiales.info *.dashboard.manantiales.info *.dev.manantiales.info *.ftp.manantiales.info *.m.manantiales.info *.mail.manantiales.info *.mailer.manantiales.info manantiales.info *.manantiales.info *.marketing.manantiales.info *.members.manantiales.info *.mxav1.manantiales.info *.mxav2.manantiales.info *.pjgedvnrhmftp.manantiales.info *.pop3.manantiales.info *.qa.manantiales.info *.relay.manantiales.info *.secure.manantiales.info *.shop.manantiales.info *.test.manantiales.info *.uat.manantiales.info *.vnrhmftp.manantiales.info *.web.manantiales.info *.webmail.manantiales.info *.wlciiadmin.manantiales.info *.ww25.manantiales.info *.ww38.manantiales.info
*.2a6cac38-5e2c-41c7-8ac3-76c7a87deafa.maplestory.pro *.5db3aa3e-0846-4d52-9ab3-a8dc8172dd92.maplestory.pro *.9vah2l.maplestory.pro *.account.maplestory.pro *.admin.maplestory.pro *.api.maplestory.pro *.app.maplestory.pro *.assets.maplestory.pro *.bbs.maplestory.pro *.blog.maplestory.pro *.cabinet.maplestory.pro *.dashboard.maplestory.pro *.docs.maplestory.pro *.e53a4363-b307-4053-8e95-f297a462d787.maplestory.pro *.f4a6cdcb-c105-45c2-a821-7eecf8024d57.maplestory.pro *.f50f48f3-fa56-422c-8d8e-d0e5dda971e4.maplestory.pro *.hostmaster.maplestory.pro *.login.maplestory.pro *.m.maplestory.pro *.mailer.maplestory.pro *.mainnet.maplestory.pro maplestory.pro *.maplestory.pro *.marketing.maplestory.pro *.sitemap.maplestory.pro *.sitemaps.maplestory.pro *.sso.maplestory.pro *.testnet.maplestory.pro *.testtoken.maplestory.pro *.v1.maplestory.pro *.ww25.maplestory.pro *.www.maplestory.pro *.zxkikblog.maplestory.pro
*.app.xn--6rt149e.com *.blog.xn--6rt149e.com *.mailer.xn--6rt149e.com *.qa.xn--6rt149e.com *.rds.xn--6rt149e.com *.uat.xn--6rt149e.com *.v2.xn--6rt149e.com *.web.xn--6rt149e.com xn--6rt149e.com *.xn--6rt149e.com