76/100 SECURITY SCORE

Certificate Information

Subject
CN=tuborg.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 29, 2026
Valid Until
July 28, 2026 37 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AA:47:E6:8D:C7:98:72:D9:E1:85:19:FA:64:BB:6F:FB:50:67:E8:B1:34:36:C6:10:6A:78:FA:69:3C:2D:C3:A8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

83 domains
captureyourreceipts.com *.captureyourreceipts.com

Other domains in certificate

18tv2.com *.18tv2.com
21st.au *.21st.au
94ptt.com *.94ptt.com *.random.94ptt.com
assurement-rugby.com *.assurement-rugby.com
asteroids.com.au *.asteroids.com.au
blaqrosehair.com *.blaqrosehair.com *.random.blaqrosehair.com
boe-futuretalent.co.uk *.boe-futuretalent.co.uk
budgetpc.tech *.budgetpc.tech *.marketplace.budgetpc.tech
cheesy.au *.cheesy.au
clearforkdb.com *.clearforkdb.com
cloudaliaeducacion.com *.cloudaliaeducacion.com
curriculums.com.au *.curriculums.com.au
descargasdirectasatope.com *.descargasdirectasatope.com
elpasoambassador.com *.elpasoambassador.com
gadgetgeek.com.au *.gadgetgeek.com.au
gertrudestreet.au *.gertrudestreet.au
globaltelink.com *.globaltelink.com
globaltradearredobagno.net *.globaltradearredobagno.net *.ww38.globaltradearredobagno.net
hachiesports.com *.hachiesports.com *.wildcard.hachiesports.com
hja5c1.top *.hja5c1.top *.ww16.hja5c1.top *.ww25.hja5c1.top
mikesfurniture.com *.mikesfurniture.com *.nullmx.mikesfurniture.com *.old.mikesfurniture.com *.random.mikesfurniture.com *.ww25.mikesfurniture.com
mvv.au *.mvv.au *.ww25.mvv.au
perksatwork.au *.perksatwork.au
reddint.com *.reddint.com
sintasis.org *.sintasis.org
*.lyrics.sound-drivers.org *.ns4.sound-drivers.org *.preview.sound-drivers.org sound-drivers.org *.sound-drivers.org *.viz.sound-drivers.org *.www.sound-drivers.org
techceleratorstatecollege.org *.techceleratorstatecollege.org
themecakesbyjoelene.com *.themecakesbyjoelene.com
tuborg.live *.tuborg.live
vacantblock.com.au *.vacantblock.com.au
visterprint.com *.visterprint.com
xch.au *.xch.au