Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=gossipgems.xyz
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 02, 2026
Valid Until
August 31, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
32:7B:F7:71:30:A7:8E:55:00:F6:72:BD:05:E3:E9:56:40:67:86:A0:8D:BF:C7:76:76:CF:19:B1:5D:53:9E:40
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bibledonkeys.com *.bibledonkeys.com *.topspin.bibledonkeys.com *.vpn13.bibledonkeys.com

Other domains in certificate

1999slots.com *.1999slots.com *.sitemap.1999slots.com *.www.1999slots.com
adtelly.com *.adtelly.com *.cloud.adtelly.com *.remote.adtelly.com
bahasakode4d.com *.bahasakode4d.com
candidowedding.com *.candidowedding.com
dlivrdteam.com *.dlivrdteam.com
ghw.asia *.ghw.asia
*.demo.gizmojig.com *.dev.gizmojig.com gizmojig.com *.gizmojig.com *.members.gizmojig.com *.test.gizmojig.com *.vpn.gizmojig.com
gossipgems.xyz *.gossipgems.xyz
*.25.ilovethebeach.co *.blog.ilovethebeach.co *.community.ilovethebeach.co *.cr8nis4g064dcgbblhe0.ilovethebeach.co *.cr8njh4g064dck4fpsu0.ilovethebeach.co *.en.ilovethebeach.co ilovethebeach.co *.ilovethebeach.co *.m.ilovethebeach.co *.mobile.ilovethebeach.co *.remote.ilovethebeach.co *.rmhgtcno.ilovethebeach.co *.sandbox.ilovethebeach.co *.staging.ilovethebeach.co *.ww1.ilovethebeach.co *.ww25.ilovethebeach.co *.ww38.ilovethebeach.co *.www.ilovethebeach.co
imvavatars.com *.imvavatars.com *.remote.imvavatars.com
kk61.my *.kk61.my
*.39ir6.kmnopq.top *.60t9v.kmnopq.top *.79dp3h.kmnopq.top *.87ab5.kmnopq.top *.89wkp.kmnopq.top *.gjdvb.kmnopq.top kmnopq.top *.kmnopq.top *.qdiek.kmnopq.top *.s5kjz.kmnopq.top
mslot998v4.xyz *.mslot998v4.xyz
mvliqy.com *.mvliqy.com
*.beta.poolrepairs.co.uk poolrepairs.co.uk *.poolrepairs.co.uk
publicreceitasvirais.site *.publicreceitasvirais.site *.ww25.publicreceitasvirais.site
*.demo.sff12.xyz sff12.xyz *.sff12.xyz *.ww38.sff12.xyz
*.app.tabletsmartphone.it *.dashs.tabletsmartphone.it tabletsmartphone.it *.tabletsmartphone.it
uniqcovosa.com *.uniqcovosa.com
*.16bz5.volnacasino2play.top *.cg4o5.volnacasino2play.top *.d.volnacasino2play.top *.dn930.volnacasino2play.top *.kwid9.volnacasino2play.top volnacasino2play.top *.volnacasino2play.top *.zruod.volnacasino2play.top