76/100 SECURITY SCORE

Certificate Information

Subject
CN=rblx.chat
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 16, 2026
Valid Until
August 14, 2026 66 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E8:70:F9:28:3A:42:91:AE:CA:D4:34:92:6F:A8:3F:2C:66:26:8E:FD:8E:32:8C:5B:39:DD:A6:2F:CB:88:69:90
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
lumbinitourpackage.com *.lumbinitourpackage.com *.app.lumbinitourpackage.com *.bbs.lumbinitourpackage.com *.demo.lumbinitourpackage.com *.hostmaster.lumbinitourpackage.com

Other domains in certificate

clinicaonline.online *.clinicaonline.online *.sitemap.clinicaonline.online *.sitemaps.clinicaonline.online
*.axis.findafelon.com *.backup.findafelon.com *.base.findafelon.com *.bounce.findafelon.com *.bugs.findafelon.com *.co.findafelon.com *.cp.findafelon.com *.datacenter.findafelon.com *.elearning.findafelon.com *.esx3.findafelon.com *.film.findafelon.com findafelon.com *.findafelon.com *.food.findafelon.com *.formacion.findafelon.com *.fr.findafelon.com *.members.findafelon.com *.router1.findafelon.com *.shop.findafelon.com *.shopping.findafelon.com *.soccer.findafelon.com *.stat1.findafelon.com *.static.findafelon.com *.system.findafelon.com *.terminal.findafelon.com *.testserver.findafelon.com *.travel.findafelon.com *.users.findafelon.com *.verify.findafelon.com *.video.findafelon.com *.world.findafelon.com *.xmail.findafelon.com
fragrancematch.com *.fragrancematch.com *.hostmaster.fragrancematch.com *.m.fragrancematch.com *.panel.fragrancematch.com *.rd.fragrancematch.com *.sitemap.fragrancematch.com *.sitemaps.fragrancematch.com
iqbap.software *.iqbap.software *.s.iqbap.software
*.app.lamsatjamal.art *.dev.lamsatjamal.art lamsatjamal.art *.lamsatjamal.art
london-studios.co.uk *.london-studios.co.uk *.www.london-studios.co.uk
*.admin.rblx.chat *.api.rblx.chat *.app.rblx.chat *.b4e5057a-3888-4723-a0c8-a4a4063ee7ad.rblx.chat *.demo.rblx.chat *.dev.rblx.chat *.fc175f71-9af7-4761-8f66-681c2b70d3b5.rblx.chat *.hostmaster.rblx.chat *.hrlgiapp.rblx.chat *.magento.rblx.chat *.mobile.rblx.chat *.ndxylpvr.rblx.chat *.old.rblx.chat *.psql01.rblx.chat *.psql05.rblx.chat rblx.chat *.rblx.chat *.staging.rblx.chat *.store.rblx.chat *.test.rblx.chat *.www.rblx.chat
sohl.studio *.sohl.studio
*.d6.summerplaceva.com *.lb.summerplaceva.com *.mail2.summerplaceva.com *.random.summerplaceva.com summerplaceva.com *.summerplaceva.com *.ww25.summerplaceva.com