Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=trojenamountains.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:67:C7:C2:F2:A5:4A:DF:8A:78:EF:EF:F3:7B:DA:66:05:E8:21:C3:44:21:33:39:6B:48:D5:F4:55:68:0E:FC
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
camdencustard.site *.camdencustard.site *.doge.camdencustard.site *.interstellar.camdencustard.site *.pay.camdencustard.site

Other domains in certificate

bongkar69.net *.bongkar69.net *.smtp.bongkar69.net
*.analytics-preprod.candela.club candela.club *.candela.club *.www.candela.club
*.alpha.milieubrigade.nl milieubrigade.nl *.milieubrigade.nl *.uat.milieubrigade.nl
*.hostmaster.sleep.global sleep.global *.sleep.global
*.3a1e04a0-4f93-4a7e-8a20-31f7b77539ce.t4play.se *.5be512a4-9ee3-4ccd-be9c-5d43c766fa58.t4play.se *.67c1730e-ae05-4faa-9215-c72dce77aac5.t4play.se *.acofqativera.t4play.se *.activer.t4play.se *.activera.t4play.se *.admin.t4play.se *.aktiera.t4play.se *.aktiver.t4play.se *.aktivera.t4play.se *.aktiveria.t4play.se *.aktivers.t4play.se *.aktiveta.t4play.se *.aktvera.t4play.se *.altivera.t4play.se *.analytic.t4play.se *.api.t4play.se *.app.t4play.se *.ativera.t4play.se *.backend.t4play.se *.beta.t4play.se *.bi.t4play.se *.cbeb61e4-620b-4bfd-ab07-f8bf0342154e.t4play.se *.chart.t4play.se *.cicd-production.t4play.se *.cloud.t4play.se *.cloudvpn.t4play.se *.dashboard.t4play.se *.dashs.t4play.se *.erp.t4play.se *.evo.t4play.se *.f1958ae1-5721-4a37-bee3-63bc16d4096f.t4play.se *.login.t4play.se *.m.t4play.se *.metric.t4play.se *.minasidor.t4play.se *.notexistsaktivera.t4play.se *.notexistsapp.t4play.se *.rd.t4play.se *.rds.t4play.se *.rdweb.t4play.se *.remote.t4play.se *.staging.t4play.se *.superset.t4play.se t4play.se *.t4play.se *.vpn.t4play.se *.webmail.t4play.se *.ww.t4play.se *.www.t4play.se
*.backend.talpa.it *.hostmaster.talpa.it *.mx.talpa.it talpa.it *.talpa.it
*.hostmaster.thecrabs.it *.owa.thecrabs.it thecrabs.it *.thecrabs.it
*.m.trojenamountains.com trojenamountains.com *.trojenamountains.com
*.1846m.w95pqmzukf.xyz *.bnbod.w95pqmzukf.xyz w95pqmzukf.xyz *.w95pqmzukf.xyz
*.dmail.wegothere.org wegothere.org *.wegothere.org