76/100 SECURITY SCORE

Certificate Information

Subject
CN=auctopi.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 09, 2026
Valid Until
May 10, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C0:CB:2C:ED:E8:2C:A0:1A:07:10:15:71:E2:C7:C1:6C:DD:79:6B:28:30:5E:32:DA:ED:BB:25:12:26:CA:08:3E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
auctopi.com *.auctopi.com *.admin.auctopi.com *.api.auctopi.com *.assets.auctopi.com *.cloud.auctopi.com *.demo.auctopi.com *.dev.auctopi.com *.members.auctopi.com *.mta.auctopi.com *.rds.auctopi.com *.rdweb.auctopi.com *.remote.auctopi.com *.shop.auctopi.com *.test.auctopi.com *.webmail.auctopi.com *.www.auctopi.com *.zpnwfbecavrds.auctopi.com

Other domains in certificate

1024hgc.org *.1024hgc.org *.www.1024hgc.org *.xp.1024hgc.org
*.api.epc-rekor.com *.audio.epc-rekor.com *.chart.epc-rekor.com *.circle.epc-rekor.com *.cpanel.epc-rekor.com *.cpcalendars.epc-rekor.com *.cpcontacts.epc-rekor.com *.d33b9fe0-1048-4d35-a49f-7f90222af6f9.epc-rekor.com *.emv1.epc-rekor.com epc-rekor.com *.epc-rekor.com *.explorer.epc-rekor.com *.ftp2.epc-rekor.com *.local.epc-rekor.com *.locations.epc-rekor.com *.m.epc-rekor.com *.notexistscheckout.epc-rekor.com *.notexistspro.epc-rekor.com *.pop3.epc-rekor.com *.pro.epc-rekor.com *.rdweb.epc-rekor.com *.remote.epc-rekor.com *.sitemap.epc-rekor.com *.smtp.epc-rekor.com *.smtpauth.epc-rekor.com *.stores.epc-rekor.com *.vpn.epc-rekor.com *.webdisk.epc-rekor.com
flavouredcondom.in *.flavouredcondom.in *.www.flavouredcondom.in
fuzzyfeet.com *.fuzzyfeet.com *.www.fuzzyfeet.com
*.admin.internetinchina.com *.api.internetinchina.com *.assets.internetinchina.com *.dashboard.internetinchina.com *.demo.internetinchina.com *.dev.internetinchina.com *.hostmaster.internetinchina.com internetinchina.com *.internetinchina.com *.mailer.internetinchina.com *.rds1.internetinchina.com *.rwzvpapi.internetinchina.com *.staging.internetinchina.com *.test.internetinchina.com *.v1.internetinchina.com *.web.internetinchina.com *.ww11.internetinchina.com *.ww17.internetinchina.com
iquadri.it *.iquadri.it *.remote.iquadri.it
*.beta.jun4u.com *.development.jun4u.com jun4u.com *.jun4u.com
maks.bet *.maks.bet *.u.maks.bet
*.adzs.qne378.com *.pudx.qne378.com qne378.com *.qne378.com