76/100 SECURITY SCORE

Certificate Information

Subject
CN=ski3.loan
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 26, 2026
Valid Until
August 24, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8F:FC:F6:9E:93:20:67:C0:64:A6:1D:65:AF:DB:E0:4A:17:C9:4F:00:AE:6D:56:41:EA:9D:C8:C2:C4:A5:5F:8A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
websiteelevator.com *.websiteelevator.com *.api.websiteelevator.com *.app.websiteelevator.com *.dev.websiteelevator.com *.members.websiteelevator.com *.rustore.websiteelevator.com *.test.websiteelevator.com

Other domains in certificate

1ab82829ffb26028.com *.1ab82829ffb26028.com
*.1589025414.bioskopkerenin.online *.answers.bioskopkerenin.online *.auth.bioskopkerenin.online bioskopkerenin.online *.bioskopkerenin.online *.blog.bioskopkerenin.online *.friday.bioskopkerenin.online *.googlpiz.bioskopkerenin.online *.jp-life.bioskopkerenin.online *.mlmclilydale.bioskopkerenin.online *.wsses.bioskopkerenin.online *.www5.bioskopkerenin.online
board.net.au *.board.net.au *.cpcontacts.board.net.au *.dixonfamily.board.net.au *.macq-syd-intel2-gtm0.board.net.au *.out.board.net.au *.the.board.net.au *.vista.board.net.au
*.a78b87ff-94c8-448a-accd-aa3ddc30e679.botic.cc botic.cc *.botic.cc
disasterdrone.com *.disasterdrone.com
*.adelcadmin.greenaya.com *.api.greenaya.com *.app.greenaya.com *.assets.greenaya.com *.demo.greenaya.com greenaya.com *.greenaya.com *.m.greenaya.com *.members.greenaya.com *.random.greenaya.com *.staging.greenaya.com *.vpn.greenaya.com *.www.greenaya.com
historivision.world *.historivision.world
*.aecoupons.jobbra.com *.autodiscover.jobbra.com *.cpanel.jobbra.com *.cpcalendars.jobbra.com *.cpcontacts.jobbra.com *.isweightloss.jobbra.com jobbra.com *.jobbra.com *.m.jobbra.com *.mail.jobbra.com *.officewas.jobbra.com *.webmail.jobbra.com
languagelearning.me *.languagelearning.me
laptopswithnodownpayment.sbs *.laptopswithnodownpayment.sbs
n8388v2.xyz *.n8388v2.xyz
*.my.naijfix.com naijfix.com *.naijfix.com *.public.naijfix.com *.server.naijfix.com *.vpn.naijfix.com *.www.naijfix.com
ski3.loan *.ski3.loan *.ww25.ski3.loan
terrificslemon.com *.terrificslemon.com
theshopsite.com *.theshopsite.com
yhylzb2.vip *.yhylzb2.vip
yjnie.gdn *.yjnie.gdn
*.rlpzyww25.zenithfit.click *.ww38.zenithfit.click zenithfit.click *.zenithfit.click