76/100 SECURITY SCORE

Certificate Information

Subject
CN=shopallyourneed.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 14, 2026
Valid Until
July 13, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:2E:94:05:4D:0C:63:7C:06:9A:42:D8:43:65:0C:B5:D5:B0:65:32:02:F3:61:FD:45:8D:50:EC:5E:E2:17:D2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bookface.it *.bookface.it *.admin.bookface.it *.analytics.bookface.it *.api.bookface.it *.app.bookface.it *.backend.bookface.it *.bigdata.bookface.it *.dashboards.bookface.it *.dashs.bookface.it *.forecast.bookface.it *.intelligence.bookface.it *.metric.bookface.it *.metrics.bookface.it *.report.bookface.it *.reporting.bookface.it *.staging.bookface.it *.supersets.bookface.it *.visual.bookface.it

Other domains in certificate

a7a5.xyz *.a7a5.xyz *.kwid9.a7a5.xyz
*.analytics.filmnet.it *.bi.filmnet.it *.dashs.filmnet.it *.demo.filmnet.it filmnet.it *.filmnet.it *.intelligence.filmnet.it *.staging.filmnet.it *.superset.filmnet.it *.tv.filmnet.it *.www.filmnet.it
lorabetgit.com *.lorabetgit.com *.wp.lorabetgit.com
*.hostmaster.lutod.com lutod.com *.lutod.com
*.com.please-bang-my-wife.net please-bang-my-wife.net *.please-bang-my-wife.net
popuptimerfactory.com *.popuptimerfactory.com *.rustore.popuptimerfactory.com
rocketdropship.co *.rocketdropship.co *.ww17.rocketdropship.co
rpveugkfjbmf5fa.top *.rpveugkfjbmf5fa.top
ruhetage.com *.ruhetage.com
sharemail.net *.sharemail.net
*.backend.shits.it shits.it *.shits.it
*.hoie-21dekal.shopallyourneed.com shopallyourneed.com *.shopallyourneed.com
*.432.shopping247store.com shopping247store.com *.shopping247store.com
smitarana.com *.smitarana.com
sydellewillowsmith.com *.sydellewillowsmith.com
u77.top *.u77.top
votateu288.vip *.votateu288.vip
vrndghj304.vip *.vrndghj304.vip
vyuib.net *.vyuib.net
w13726381.com *.w13726381.com
w2j6y6z3x.top *.w2j6y6z3x.top
w2m1g2z5p.top *.w2m1g2z5p.top
wemi.in *.wemi.in
*.admin.wis77jp.co *.api.wis77jp.co *.assets.wis77jp.co *.demo.wis77jp.co *.hostmaster.wis77jp.co wis77jp.co *.wis77jp.co