76/100 SECURITY SCORE

Certificate Information

Subject
CN=moviepang1.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 06, 2026
Valid Until
May 07, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4F:68:3D:38:E4:31:D4:AA:7B:EC:34:3F:B0:6B:23:B3:65:5C:59:2B:80:A9:C1:55:49:2D:60:25:1F:1C:35:38
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
amgconnectnow.com *.amgconnectnow.com *.api.amgconnectnow.com *.assets.amgconnectnow.com *.bestellen.amgconnectnow.com *.console.amgconnectnow.com *.dev.amgconnectnow.com *.hostmaster.amgconnectnow.com *.ifefsblog.amgconnectnow.com *.rd.amgconnectnow.com *.rds.amgconnectnow.com *.rdweb.amgconnectnow.com *.share.amgconnectnow.com *.wdmimhostmaster.amgconnectnow.com *.www.amgconnectnow.com

Other domains in certificate

9thcorridorllc.app *.9thcorridorllc.app *.hostmaster.9thcorridorllc.app
alraai.com *.alraai.com *.forums.alraai.com
*.a.devaka.com *.blog.devaka.com *.catalog.devaka.com *.dev2.devaka.com devaka.com *.devaka.com *.directory.devaka.com *.film.devaka.com *.hostmaster.devaka.com *.kk.devaka.com *.mail.devaka.com *.mx.devaka.com *.pool.devaka.com *.ssl.devaka.com *.users.devaka.com *.vpn-eu.devaka.com *.vpn.devaka.com *.webmail.devaka.com *.website.devaka.com *.ww17.devaka.com *.ww25.devaka.com *.zmml.devaka.com
*.blog.elrington.com elrington.com *.elrington.com *.ww16.elrington.com
*.admin.kitchengardendirect.com *.api.kitchengardendirect.com *.dev.kitchengardendirect.com *.gjmvnshop.kitchengardendirect.com kitchengardendirect.com *.kitchengardendirect.com *.mail.kitchengardendirect.com
moviepang1.xyz *.moviepang1.xyz *.test.moviepang1.xyz *.ww25.moviepang1.xyz
*.1ve5.puul.com *.acceso.puul.com *.aesnm.puul.com *.api.puul.com *.cuppellohouse.puul.com *.dqkw.puul.com *.jimenez-term.puul.com *.kute.puul.com puul.com *.puul.com *.secure.puul.com *.sts.puul.com *.studentsvpn.puul.com *.teams.puul.com *.test.puul.com *.ww25.puul.com *.zmail.puul.com
*.hostmaster.ronberg.com ronberg.com *.ronberg.com *.vpn.ronberg.com *.ww1.ronberg.com *.ww16.ronberg.com *.ww17.ronberg.com *.ww25.ronberg.com *.ww38.ronberg.com *.ww5.ronberg.com
*.dev.story-sex.com story-sex.com *.story-sex.com