Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=windowfonts.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 02, 2026
Valid Until
July 31, 2026 46 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B3:0D:CE:00:AD:01:E4:0F:9B:71:A1:70:F6:B4:E1:ED:26:BD:5C:69:A9:EA:2F:39:9B:47:4E:E0:46:C6:6A:F4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
chapters.net.au *.chapters.net.au

Other domains in certificate

3uu.my *.3uu.my
958762.im *.958762.im
coldleadboost.com *.coldleadboost.com
europa.work *.europa.work
ffks.lat *.ffks.lat
foxelectricians.com *.foxelectricians.com
get-b2bfundinglabs.com *.get-b2bfundinglabs.com
gigxa.com *.gigxa.com
home-value-calculator-84485.click *.home-value-calculator-84485.click
hyltria.com *.hyltria.com
hyqgjd.com *.hyqgjd.com
ilimkalesi.info *.ilimkalesi.info
indi-pickup-truck.today *.indi-pickup-truck.today
indi-used-bus.today *.indi-used-bus.today
indi-used-buses.today *.indi-used-buses.today
influencerdiscuss.com *.influencerdiscuss.com
interdependencecommunications.com *.interdependencecommunications.com
jedaj.gdn *.jedaj.gdn
magicluarbiasa.vip *.magicluarbiasa.vip
malerforstner.at *.malerforstner.at
precisiontripplanner.xyz *.precisiontripplanner.xyz
*.blog.qstacks.com qstacks.com *.qstacks.com
realmwin824.shop *.realmwin824.shop
*.driver.recca.com *.of.recca.com *.random.recca.com recca.com *.recca.com
*.autodiscover.siddiquesonscaterers.com *.cpanel.siddiquesonscaterers.com *.cpcalendars.siddiquesonscaterers.com *.cpcontacts.siddiquesonscaterers.com *.hostmaster.siddiquesonscaterers.com *.mta-sts.siddiquesonscaterers.com siddiquesonscaterers.com *.siddiquesonscaterers.com *.sitemaps.siddiquesonscaterers.com *.webdisk.siddiquesonscaterers.com *.webmail.siddiquesonscaterers.com *.www.siddiquesonscaterers.com *.www1.siddiquesonscaterers.com
simplytheplanned.com *.simplytheplanned.com
svu-itly.today *.svu-itly.today
telesamsar.com *.telesamsar.com
travelwisenow.xyz *.travelwisenow.xyz
u39999.cc *.u39999.cc
vipcb.co *.vipcb.co
windowfonts.com *.windowfonts.com
workwithicana.com *.workwithicana.com
xn--c5ww1a.com *.xn--c5ww1a.com
xxxpicspub.xyz *.xxxpicspub.xyz
yzhub.com *.yzhub.com