76/100 SECURITY SCORE

Certificate Information

Subject
CN=aipayment.tech
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 28, 2026
Valid Until
August 26, 2026 66 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2A:63:65:EC:51:79:98:72:09:D6:86:9A:03:9D:84:FE:E9:BB:DA:1A:B4:5F:01:9F:18:19:7E:BA:CD:23:96:E5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
nansen-chain.tech *.nansen-chain.tech *.admin.nansen-chain.tech *.aging.nansen-chain.tech *.fsympqa.nansen-chain.tech *.git.nansen-chain.tech *.uat.nansen-chain.tech *.uhvarmail.nansen-chain.tech *.untlvdep.nansen-chain.tech *.v1.nansen-chain.tech *.v2.nansen-chain.tech *.web.nansen-chain.tech

Other domains in certificate

a344ylxx.top *.a344ylxx.top *.ntmju.a344ylxx.top
aipayment.tech *.aipayment.tech *.csdzrstg.aipayment.tech
*.anzhuo.bandi.life bandi.life *.bandi.life *.random.bandi.life
*.aidoczh.compyro.com compyro.com *.compyro.com
conservador.com *.conservador.com *.ocp.conservador.com
*.banako.converbuilder.com *.biolek-dev.converbuilder.com converbuilder.com *.converbuilder.com *.corrana.converbuilder.com *.elenaart.converbuilder.com *.filmarka.converbuilder.com *.hormonalna-harmonia.converbuilder.com *.kleopatra.converbuilder.com *.kniga-vosakoleene.converbuilder.com *.productivitypower.converbuilder.com *.ww25.converbuilder.com
*.admin.kanal8.de *.ddp.kanal8.de *.dewww.kanal8.de *.download07.kanal8.de *.download61.kanal8.de kanal8.de *.kanal8.de *.media.kanal8.de *.media01.kanal8.de *.media05.kanal8.de *.media07.kanal8.de *.media08.kanal8.de *.media13.kanal8.de *.media14.kanal8.de *.media21.kanal8.de *.media34.kanal8.de *.media58.kanal8.de *.media61.kanal8.de *.media62.kanal8.de *.media82.kanal8.de *.media96.kanal8.de *.random.kanal8.de *.server14.kanal8.de *.server61.kanal8.de *.stream06.kanal8.de *.tvalive.kanal8.de *.vod01.kanal8.de *.webcams.kanal8.de
lilithacollege.co.za *.lilithacollege.co.za *.mail.lilithacollege.co.za *.pop.lilithacollege.co.za *.smtp.lilithacollege.co.za
pgtoto.com *.pgtoto.com *.ww38.pgtoto.com
*.cloud.programmatic-print.com *.m.programmatic-print.com programmatic-print.com *.programmatic-print.com *.rdweb.programmatic-print.com
*.bits-earn.unkinstantdelivery.net *.futuretrades.unkinstantdelivery.net unkinstantdelivery.net *.unkinstantdelivery.net *.vertex-yield-llc.unkinstantdelivery.net
*.32.yourdesire.life yourdesire.life *.yourdesire.life