Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=1clickhelp.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 31, 2026
Valid Until
May 01, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
42:BA:6D:1A:8F:52:55:9E:FE:4E:CC:F0:64:09:8D:F3:92:FE:F2:B6:72:CC:B0:F4:B5:E9:9A:16:CB:23:31:45
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
91 domains
1clickhelp.com
*.1clickhelp.com
200sz8.my
*.200sz8.my
216795.top
*.216795.top
6b3gf31m.top
*.6b3gf31m.top
812963.one
*.812963.one
8dkh.com
*.8dkh.com
916285.top
*.916285.top
agelesstraveldreams.live
*.agelesstraveldreams.live
aidir.xyz
*.aidir.xyz
amikazi.deals
*.amikazi.deals
anapaulaalverde.com
*.anapaulaalverde.com
aptweb03service.com
*.aptweb03service.com
argofamiglia.com
*.argofamiglia.com
asia77live.com
*.asia77live.com
aspirationalfitnessgoals.run
*.aspirationalfitnessgoals.run
aubade.in
*.aubade.in
blinddance.org
*.blinddance.org
bossbet88.one
*.bossbet88.one
bproxy.vip
*.bproxy.vip
caremeddical.com
*.caremeddical.com
caymanislandshomes.com
*.caymanislandshomes.com
community-garden.com
*.community-garden.com
deinfra.network
*.deinfra.network
durians.best
*.durians.best
dzdbwz23.com
*.dzdbwz23.com
emprendeideas.com
*.emprendeideas.com
gaitravelapp.com
*.gaitravelapp.com
gleamworks.hu
*.gleamworks.hu
hpsmaet.com
*.hpsmaet.com
inspirefinacial.com
*.inspirefinacial.com
intercambiosos.com
*.intercambiosos.com
ipaybi.com
*.ipaybi.com
itnhorqueta.com
*.itnhorqueta.com
jpvpt.net
*.jpvpt.net
learnsolve.com
*.learnsolve.com
mabar69-max.com
*.mabar69-max.com
manageyourmarketing.com.au
*.manageyourmarketing.com.au
mvnetech.com
*.mvnetech.com
ngurufarm.com
*.ngurufarm.com
*.kjdtjomudoassets.pleasegettherapy.com
pleasegettherapy.com
*.pleasegettherapy.com
rhenium.ai
*.rhenium.ai
thevideomakers.com
*.thevideomakers.com
timegulf.com
*.timegulf.com
victorsport.hu
*.victorsport.hu
weddingsinparadise.beauty
*.weddingsinparadise.beauty
Other domains in certificate