76/100 SECURITY SCORE

Certificate Information

Subject
CN=fakemessages.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026 77 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
11:C3:A9:D2:AC:23:E5:F9:35:99:72:6C:E0:E5:0B:F8:80:A3:A1:13:E9:5B:A4:F9:E0:49:40:61:A0:DB:AA:F7
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
shadowrocketlp.com *.shadowrocketlp.com *.blog.shadowrocketlp.com *.cloud.shadowrocketlp.com *.rd.shadowrocketlp.com *.rds.shadowrocketlp.com *.rdweb.shadowrocketlp.com *.remote.shadowrocketlp.com *.shop.shadowrocketlp.com

Other domains in certificate

1980.my *.1980.my *.26.1980.my
371t.cc *.371t.cc
a177lls.top *.a177lls.top *.gwycjpuc.a177lls.top
acoisatoda.com *.acoisatoda.com *.ww16.acoisatoda.com *.ww25.acoisatoda.com *.ww38.acoisatoda.com
amplifyvistaprosales.pro *.amplifyvistaprosales.pro
amsterdam.solar *.amsterdam.solar
aozpxc.bond *.aozpxc.bond
bigstone.store *.bigstone.store
buythetrend.net *.buythetrend.net *.eu.buythetrend.net
clearviewtravelguides.live *.clearviewtravelguides.live
*.app.fakemessages.com *.dev.fakemessages.com fakemessages.com *.fakemessages.com *.mail.fakemessages.com *.notexistsapp.fakemessages.com *.notexistsdev.fakemessages.com *.staging.fakemessages.com *.webmail.fakemessages.com *.wildcard.fakemessages.com
flasmr.xyz *.flasmr.xyz *.ww25.flasmr.xyz
*.mail.piperschmidt.com piperschmidt.com *.piperschmidt.com
*.cloud.shadowrocketic.com *.rd.shadowrocketic.com *.rds.shadowrocketic.com *.rdweb.shadowrocketic.com *.remote.shadowrocketic.com shadowrocketic.com *.shadowrocketic.com
*.mail.socialconnect.digital socialconnect.digital *.socialconnect.digital *.www.socialconnect.digital
*.random.sportytv.live *.rustore.sportytv.live sportytv.live *.sportytv.live
*.anyconnect.vodito.com *.apps.vodito.com *.autodiscover.vodito.com *.cloud.vodito.com *.desktop.vodito.com *.gateway.vodito.com *.login.vodito.com *.office.vodito.com *.rd.vodito.com *.rdg.vodito.com *.rdp.vodito.com *.rds.vodito.com *.remote.vodito.com *.ts.vodito.com vodito.com *.vodito.com *.webvpn.vodito.com *.wwww.vodito.com
*.and-acc-game.xn--yfrw1goy3egzffc.com *.bel-link-chl.xn--yfrw1goy3egzffc.com *.hrv-kan-qatar2022.xn--yfrw1goy3egzffc.com xn--yfrw1goy3egzffc.com *.xn--yfrw1goy3egzffc.com