76/100 SECURITY SCORE

Certificate Information

Subject
CN=pool.ad
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 22, 2026
Valid Until
August 20, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C2:17:B4:D0:3F:6F:60:0E:4B:D5:43:10:11:D4:9F:21:6E:33:D2:E6:2C:AE:AA:9C:1A:06:7A:48:94:D3:85:5D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
btapple.com *.btapple.com *.sitemaps.btapple.com

Other domains in certificate

aforeverfriend.com *.aforeverfriend.com
aiqhaptics.com *.aiqhaptics.com
amitymultiestates.com *.amitymultiestates.com
bettertogetherwellness.com *.bettertogetherwellness.com
botse.com *.botse.com *.m.botse.com
brightboot.tech *.brightboot.tech
carrylandscapingdesign.com *.carrylandscapingdesign.com
cauayan.city *.cauayan.city *.new.cauayan.city
fintrextrader-62-apex.cyou *.fintrextrader-62-apex.cyou
fitnessoutcomepro.club *.fitnessoutcomepro.club
goldratedang.com *.goldratedang.com *.screen-news.goldratedang.com
h8l3dh8.top *.h8l3dh8.top
piggul.com *.piggul.com
pool.ad *.pool.ad
prddr.qpon *.prddr.qpon
preciousnarotso.com *.preciousnarotso.com
primablockchain.com *.primablockchain.com
primeflow247.com *.primeflow247.com
projectfitness.club *.projectfitness.club
purefitprecision.club *.purefitprecision.club
qqxsy.loan *.qqxsy.loan
radiotircoed.live *.radiotircoed.live
radiussix.com *.radiussix.com
regenafill.com *.regenafill.com
shadenik.com *.shadenik.com
shariftoiletries.com *.shariftoiletries.com
signsflow.com *.signsflow.com
slotsguru.top *.slotsguru.top
snapfreebie.com *.snapfreebie.com
tniy.pw *.tniy.pw
tradeflexamg.com *.tradeflexamg.com
tradeflexamg.org *.tradeflexamg.org
travelpoint-eg.com *.travelpoint-eg.com
uabook.top *.uabook.top
v4ry21.shop *.v4ry21.shop
vavadaindia.games *.vavadaindia.games
vdawg.sbs *.vdawg.sbs
vinoll.com *.vinoll.com
vip99bet.bet *.vip99bet.bet
virtualrealitycamera.com *.virtualrealitycamera.com
xyzaxisraiganj.in *.xyzaxisraiganj.in
zbet1.top *.zbet1.top