Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=mposlot.click
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 10, 2026
Valid Until
April 10, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:C5:A5:AA:C8:72:A4:86:A2:E8:5F:37:5E:A5:0A:50:2F:EA:BB:FF:E5:F9:B0:80:64:DA:2D:CF:23:6D:CE:1C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
apkgx.com
*.apkgx.com
69neko.life
*.69neko.life
abaixarmusicas.online
*.abaixarmusicas.online
aflamsexx.com
*.aflamsexx.com
big-win689.com
*.big-win689.com
desiauntyx.com
*.desiauntyx.com
*.alternatewebtheory.dpbrandingstudio.com
*.anulaundry.dpbrandingstudio.com
*.axniok.dpbrandingstudio.com
*.blrfam.dpbrandingstudio.com
*.dananj.dpbrandingstudio.com
dpbrandingstudio.com
*.dpbrandingstudio.com
*.idkbok.dpbrandingstudio.com
*.localchannel.dpbrandingstudio.com
*.metaappdynamics.dpbrandingstudio.com
*.ruffpageorg.dpbrandingstudio.com
*.ruffpagexyz.dpbrandingstudio.com
*.snackduck.dpbrandingstudio.com
*.startworks.dpbrandingstudio.com
*.vanitystudios.dpbrandingstudio.com
furn.life
*.furn.life
*.www.furn.life
*.6gya87hq6xucpo4.gorecycle.info
*.development-visualizations.gorecycle.info
gorecycle.info
*.gorecycle.info
*.insights-preview.gorecycle.info
*.vtkcnwwwlime.gorecycle.info
*.wwwsandbox.gorecycle.info
*.wwwvisualizations-sandbox.gorecycle.info
*.wwwwwwlime.gorecycle.info
gsmmark.com
*.gsmmark.com
handala.to
*.handala.to
*.www.handala.to
hdmovie2download.com
*.hdmovie2download.com
*.api.homefeltron.com
*.app.homefeltron.com
*.cdn.homefeltron.com
*.dev.homefeltron.com
homefeltron.com
*.homefeltron.com
*.social.homefeltron.com
jasminsherni.com
*.jasminsherni.com
keochinh.link
*.keochinh.link
meetr.co
*.meetr.co
*.www.meetr.co
mekc.info
*.mekc.info
*.api.mposlot.click
mposlot.click
*.mposlot.click
*.test.mposlot.click
*.ww38.mposlot.click
*.www.mposlot.click
myscrapbookart.com
*.myscrapbookart.com
nexuslegends.io
*.nexuslegends.io
*.www.nexuslegends.io
onionplays.net
*.onionplays.net
*.remote.onionplays.net
priceide.com
*.priceide.com
revelname.com
*.revelname.com
uasof.com
*.uasof.com
uhomgle.com
*.uhomgle.com
vidoes.link
*.vidoes.link
xwkhb.info
*.xwkhb.info
xwudfolmeqik.com
*.xwudfolmeqik.com
Other domains in certificate