76/100 SECURITY SCORE

Certificate Information

Subject
CN=y69ysm.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 09, 2025
Valid Until
March 09, 2026 40 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
88:71:4E:F9:42:CB:7C:E4:3D:55:C5:54:84:7D:3F:09:CA:1A:FA:E6:37:E1:C9:30:9F:E8:D7:20:E3:FF:3B:51
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
boohoobeach.com *.boohoobeach.com *.authsmtp.boohoobeach.com *.beta.boohoobeach.com *.ci.boohoobeach.com *.integration.boohoobeach.com *.old.boohoobeach.com *.pipeline.boohoobeach.com *.sandbox.boohoobeach.com *.smtps.boohoobeach.com

Other domains in certificate

aquiline.com.au *.aquiline.com.au
blacklabtransport.com *.blacklabtransport.com *.facebook.blacklabtransport.com
costc0.ca *.costc0.ca *.cpanel.costc0.ca *.ww25.costc0.ca
*.autoconfig.crackzone.site *.autodiscover.crackzone.site *.cpanel.crackzone.site crackzone.site *.crackzone.site *.imap.crackzone.site *.mail.crackzone.site *.smtp.crackzone.site *.whm.crackzone.site
eztaxretun.com *.eztaxretun.com *.git.eztaxretun.com
font.pink *.font.pink
*.buzwu.fs1958.co *.ci.fs1958.co fs1958.co *.fs1958.co *.fsceshow.fs1958.co *.mxns.fs1958.co *.zvwby.fs1958.co
hotandsexy.com *.hotandsexy.com *.smtpmail.hotandsexy.com *.tw.hotandsexy.com *.vip.hotandsexy.com *.ww38.hotandsexy.com
*.appolice.intenet.com *.axis.intenet.com *.bt.intenet.com *.celsia.intenet.com *.com.intenet.com *.didcloud.intenet.com *.facebook.intenet.com intenet.com *.intenet.com *.javascript.intenet.com *.korea.intenet.com *.random.intenet.com *.webmail.intenet.com *.www.intenet.com
medallions.au *.medallions.au
mlipski.site *.mlipski.site
mycookbook.com.au *.mycookbook.com.au *.webdisk.mycookbook.com.au
newcorporeacademias.com.br *.newcorporeacademias.com.br
papu-burger.pl *.papu-burger.pl
*.mail.pbb.us pbb.us *.pbb.us
*.crm.revolutiorace.de revolutiorace.de *.revolutiorace.de
samp.live *.samp.live
snif-f.ru *.snif-f.ru *.ww38.snif-f.ru
sv-stom.org *.sv-stom.org
thepermit.store *.thepermit.store
*.ww25.y69ysm.com y69ysm.com *.y69ysm.com