76/100 SECURITY SCORE

Certificate Information

Subject
CN=bet247.tech
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 29, 2026
Valid Until
July 28, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F1:17:74:C5:40:9B:6E:FF:74:77:37:80:FD:BD:6A:05:AE:8C:87:FF:D7:4A:31:DF:AA:D2:FD:1E:21:77:90:CE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ainfiniteactivity.com *.ainfiniteactivity.com *.app-gaf2ob.ainfiniteactivity.com *.app-zc7rmw.ainfiniteactivity.com *.at8bit.ainfiniteactivity.com *.ogloszenia.ainfiniteactivity.com *.report.ainfiniteactivity.com *.ww25.ainfiniteactivity.com

Other domains in certificate

*.014w8.4hu101.xyz 4hu101.xyz *.4hu101.xyz *.bkav.4hu101.xyz *.feew6.4hu101.xyz *.qdiek.4hu101.xyz *.v6j6e.4hu101.xyz
*.12b7e140-1041-44c6-990f-3fb8378c24e1.bet247.tech *.admin.bet247.tech *.api.bet247.tech *.arquivos.bet247.tech *.assets.bet247.tech *.backup.bet247.tech bet247.tech *.bet247.tech *.demo.bet247.tech *.dev.bet247.tech *.help.bet247.tech *.home.bet247.tech *.postgresql.bet247.tech *.staging.bet247.tech *.test.bet247.tech *.uat.bet247.tech
*.agent.brightstartcare.com *.auto.brightstartcare.com brightstartcare.com *.brightstartcare.com *.charge.brightstartcare.com *.flow.brightstartcare.com *.flowise.brightstartcare.com *.flowiseai.brightstartcare.com *.hosting.brightstartcare.com *.hotels.brightstartcare.com *.hotfix.brightstartcare.com *.insight.brightstartcare.com *.integration.brightstartcare.com *.mabs.brightstartcare.com *.prod.brightstartcare.com *.sandbox.brightstartcare.com *.superset.brightstartcare.com *.test.brightstartcare.com
compassfitnessbk.com *.compassfitnessbk.com
dakandian.com *.dakandian.com *.ww25.dakandian.com
jesusworshipers.com *.jesusworshipers.com *.ww11.jesusworshipers.com *.ww25.jesusworshipers.com
jnt.de *.jnt.de *.ww25.jnt.de
londonsun.com *.londonsun.com *.ww17.londonsun.com *.ww25.londonsun.com
mediterraneantourismmeeting.com *.mediterraneantourismmeeting.com
mtiresearch.com *.mtiresearch.com
no-calorie.com *.no-calorie.com *.ww25.no-calorie.com
passwordprotector.com *.passwordprotector.com
peachenailsandspa.com *.peachenailsandspa.com *.wildcard.peachenailsandspa.com
pikilinos.com *.pikilinos.com *.ww38.pikilinos.com
religiousbeliever.com *.religiousbeliever.com *.ww25.religiousbeliever.com
*.admin.sickboards.fr sickboards.fr *.sickboards.fr
wir-gehoerlosen.de *.wir-gehoerlosen.de *.ww.wir-gehoerlosen.de *.ww16.wir-gehoerlosen.de