76/100 SECURITY SCORE

Certificate Information

Subject
CN=aa2a.biz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DE:CD:A1:86:5A:7B:A6:AC:8A:33:AD:E3:7F:9A:0D:F4:43:3C:38:32:F8:D0:1B:3D:9D:11:E4:62:A6:B7:EB:6A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
samuelsons.com *.samuelsons.com *.api.samuelsons.com

Other domains in certificate

*.aa2a.aa2a.biz aa2a.biz *.aa2a.biz *.beta.aa2a.biz *.test.aa2a.biz
buee.me *.buee.me *.falconvip.buee.me *.iptv.buee.me *.isj.buee.me *.mmtv.buee.me *.mtv.buee.me *.pointtek.buee.me *.store.buee.me
federle.com *.federle.com *.test.federle.com
*.api.fisgon.com *.blog.fisgon.com fisgon.com *.fisgon.com
*.cn.fumovies.net *.comune.fumovies.net fumovies.net *.fumovies.net *.streaming.fumovies.net *.www.fumovies.net
*.adserver.liubu.com *.chat.liubu.com liubu.com *.liubu.com *.prueba.liubu.com
*.api.lstnteam.com lstnteam.com *.lstnteam.com *.members.lstnteam.com
*.api.motocicletaslaprincipal.com *.dev.motocicletaslaprincipal.com *.dualstack.motocicletaslaprincipal.com motocicletaslaprincipal.com *.motocicletaslaprincipal.com *.recovery.motocicletaslaprincipal.com
rascalscooters.com *.rascalscooters.com *.www.rascalscooters.com
*.mta-sts.teesmooth.com teesmooth.com *.teesmooth.com
*.atesaffilix.tlcasinopartners.com *.beyto.tlcasinopartners.com *.bilgibizden.tlcasinopartners.com *.brand.tlcasinopartners.com *.casdogu.tlcasinopartners.com *.casinotheboss.tlcasinopartners.com *.chady.tlcasinopartners.com *.chef.tlcasinopartners.com *.ekremabi.tlcasinopartners.com *.hakan.tlcasinopartners.com *.luckystar.tlcasinopartners.com *.mario.tlcasinopartners.com *.mta-sts.tlcasinopartners.com *.olympus.tlcasinopartners.com *.onaylibet.tlcasinopartners.com *.paravan.tlcasinopartners.com *.queen.tlcasinopartners.com *.selimkaraeski.tlcasinopartners.com *.seopak.tlcasinopartners.com *.slotburak.tlcasinopartners.com *.slotcukenan.tlcasinopartners.com *.slotmaya.tlcasinopartners.com *.slotpasa.tlcasinopartners.com *.supercas.tlcasinopartners.com *.t1.tlcasinopartners.com *.tlcasinopapaz.tlcasinopartners.com tlcasinopartners.com *.tlcasinopartners.com *.wakanda.tlcasinopartners.com *.y2.tlcasinopartners.com *.yarbay.tlcasinopartners.com
*.hostmaster.trus.com *.oak.trus.com *.paregerpublishers1973.trus.com trus.com *.trus.com
*.oeczpmembers.xn--12cbau2g0az1h0b.com xn--12cbau2g0az1h0b.com *.xn--12cbau2g0az1h0b.com