76/100 SECURITY SCORE

Certificate Information

Subject
CN=defggh.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 19, 2026
Valid Until
August 17, 2026 55 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
45:16:EA:94:1B:B5:79:7E:C9:C6:CE:E6:D3:11:AE:95:32:17:CE:C2:5E:82:E0:F2:6F:68:27:8C:B1:E3:86:63
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
reminder.chat *.reminder.chat *.app.reminder.chat *.assets.reminder.chat

Other domains in certificate

0i0o.cyou *.0i0o.cyou
470521.vip *.470521.vip *.demo.470521.vip *.ml.470521.vip
acyg-5tergs-5y4thrg-5y4thrg-54yt.sbs *.acyg-5tergs-5y4thrg-5y4thrg-54yt.sbs
*.2adb48dd-dabe-4ecf-bf27-35b1ff1edaa6.baltimorecityguide.net baltimorecityguide.net *.baltimorecityguide.net *.members.baltimorecityguide.net *.parked.baltimorecityguide.net *.www4.baltimorecityguide.net
bedachungen-boedicker.de *.bedachungen-boedicker.de
belingmore.online *.belingmore.online
*.0afmf.breeze-spark.top *.8hy5t.breeze-spark.top *.aowpq.breeze-spark.top breeze-spark.top *.breeze-spark.top *.c6udy.breeze-spark.top *.cxie3.breeze-spark.top *.dn930.breeze-spark.top *.feew6.breeze-spark.top *.fz4qv.breeze-spark.top *.jxc88.breeze-spark.top *.kwid9.breeze-spark.top *.l0r4m.breeze-spark.top *.l2aa8.breeze-spark.top *.mhtwje.breeze-spark.top *.nemln.breeze-spark.top *.oahlw.breeze-spark.top *.pwb3b.breeze-spark.top *.q2s8t.breeze-spark.top *.q86h5.breeze-spark.top *.qk6fu.breeze-spark.top *.rczhl.breeze-spark.top *.snx68.breeze-spark.top *.tpxa3.breeze-spark.top *.uugt9.breeze-spark.top *.vhakn.breeze-spark.top *.wslq2.breeze-spark.top *.www.breeze-spark.top *.xbh6h.breeze-spark.top *.xrqcg.breeze-spark.top *.y04uw.breeze-spark.top
defggh.xyz *.defggh.xyz *.tzygd.defggh.xyz
*.admin.ecollege.us *.cpcalendars.ecollege.us ecollege.us *.ecollege.us *.mysql.ecollege.us *.ssh.ecollege.us *.www3.ecollege.us
flashing.au *.flashing.au *.random.flashing.au
koins.xyz *.koins.xyz *.mx.koins.xyz
*.app.shellspearls.org shellspearls.org *.shellspearls.org
*.investors.socialchains.io *.old.socialchains.io socialchains.io *.socialchains.io *.socialchanges.socialchains.io *.ww38.socialchains.io
*.icloud.thegiodidong.com *.ithelpdesk.thegiodidong.com *.m.thegiodidong.com thegiodidong.com *.thegiodidong.com *.ww38.thegiodidong.com
wess.co.uk *.wess.co.uk
*.app.www22366.cc www22366.cc *.www22366.cc