Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=backtest.zone
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 17, 2026
Valid Until
April 17, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:7D:99:A0:D7:2E:75:5E:D0:8E:F1:8C:8C:49:85:CE:7A:42:91:80:03:F2:7F:E8:17:99:3A:1C:A1:4D:80:39
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
61 domains
backtest.zone
*.backtest.zone
ahegao.world
*.ahegao.world
appleidxyz.com
*.appleidxyz.com
chasebusiness.online
*.chasebusiness.online
consutorio.me
*.consutorio.me
dvd48.biz
*.dvd48.biz
filesbay.site
*.filesbay.site
honwaka.me
*.honwaka.me
intimcity.life
*.intimcity.life
jadeconsulting.co.uk
*.jadeconsulting.co.uk
laosloop.info
*.laosloop.info
minibrewery.info
*.minibrewery.info
naps.blog
*.naps.blog
retro777.live
*.retro777.live
surenttot430ge.xyz
*.surenttot430ge.xyz
u-c.online
*.u-c.online
xue06.xyz
*.xue06.xyz
*.add.yypxulvu.com
*.anyone.yypxulvu.com
*.anyway.yypxulvu.com
*.approve.yypxulvu.com
*.army.yypxulvu.com
*.bell.yypxulvu.com
*.bible.yypxulvu.com
*.blanket.yypxulvu.com
*.boss.yypxulvu.com
*.capital.yypxulvu.com
*.h3cqz3.yypxulvu.com
*.h3d8z1.yypxulvu.com
*.h3d9z2.yypxulvu.com
*.h3dez2.yypxulvu.com
*.h3e3z2.yypxulvu.com
*.h3ebz1.yypxulvu.com
*.h3emz5.yypxulvu.com
*.h3fbz1.yypxulvu.com
*.h3fgz1.yypxulvu.com
*.h3fpz3.yypxulvu.com
*.h3ghz2.yypxulvu.com
*.h3grz1.yypxulvu.com
*.h3h6z2.yypxulvu.com
*.h3hrz1.yypxulvu.com
*.h3hwz1.yypxulvu.com
yypxulvu.com
*.yypxulvu.com
Other domains in certificate