76/100 SECURITY SCORE

Certificate Information

Subject
CN=catnap.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
72:4F:F5:CA:71:E3:2F:92:43:3F:D4:15:31:1F:1E:D3:D3:72:1D:F2:AF:C3:68:5E:9E:BF:0F:8E:DC:64:82:B1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
cacarpets.com *.cacarpets.com *.m.cacarpets.com

Other domains in certificate

a-ticket.jp *.a-ticket.jp *.basespace.a-ticket.jp *.dev.a-ticket.jp *.event.a-ticket.jp *.ezproxy.a-ticket.jp *.hereweb.a-ticket.jp *.mobile.a-ticket.jp *.ofertas-trabajo.a-ticket.jp *.onlinebusiness.a-ticket.jp *.pls-gts.a-ticket.jp *.plsbeta.a-ticket.jp *.plsstg.a-ticket.jp *.professional.a-ticket.jp *.psb-stg.a-ticket.jp *.psb.a-ticket.jp *.publish.a-ticket.jp *.qustom.a-ticket.jp *.shrd.a-ticket.jp *.srv.a-ticket.jp *.steinhardt.a-ticket.jp *.t.a-ticket.jp *.trabajo.a-ticket.jp *.v5stg.a-ticket.jp *.www.a-ticket.jp
*.58ff3c6f-2732-426b-af52-342b49492194.bareges.com *.allegro.bareges.com bareges.com *.bareges.com *.cicd.bareges.com *.forum.bareges.com *.games.bareges.com *.ww16.bareges.com *.ww17.bareges.com *.www.bareges.com
caremaids.net *.caremaids.net
catnap.online *.catnap.online
cobasini.cfd *.cobasini.cfd *.svzzq.cobasini.cfd
*.agora.lyceecharliechaplin.com *.bpr-motos.lyceecharliechaplin.com lyceecharliechaplin.com *.lyceecharliechaplin.com *.mx.lyceecharliechaplin.com *.ullvichaplinblog.lyceecharliechaplin.com *.ww25.lyceecharliechaplin.com
*.api.makeitdo.com makeitdo.com *.makeitdo.com
mobilebatteries.au *.mobilebatteries.au
*.cpanel.modrays.net *.k.modrays.net *.m.modrays.net modrays.net *.modrays.net *.update.modrays.net *.ww25.modrays.net
*.5n7hvp.mu2rmj.mom *.ac6lwm.mu2rmj.mom *.b04w4u.mu2rmj.mom *.fjnjus.mu2rmj.mom *.j6edcv.mu2rmj.mom *.jkvs1k.mu2rmj.mom *.mjjalf.mu2rmj.mom mu2rmj.mom *.mu2rmj.mom *.tp4lai.mu2rmj.mom
palabramiel.com *.palabramiel.com *.pixel.palabramiel.com *.portal.palabramiel.com
powiekszanie.com *.powiekszanie.com *.random.powiekszanie.com
raylene.au *.raylene.au
*.desktop.wyttenbach.com *.ra.wyttenbach.com *.ssl.wyttenbach.com *.vdi.wyttenbach.com *.vpn1.wyttenbach.com wyttenbach.com *.wyttenbach.com