76/100 SECURITY SCORE

Certificate Information

Subject
CN=financetown-ph.space
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 02, 2026
Valid Until
May 03, 2026 77 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6D:42:C7:DF:76:E9:9B:41:D3:80:CD:04:68:73:94:0F:52:28:76:48:19:25:BB:71:70:8C:1E:19:82:FA:B9:35
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

86 domains
paraka.com *.paraka.com *.demo.paraka.com *.forum.paraka.com *.receiver.paraka.com *.secure.paraka.com

Other domains in certificate

alwaysyoung.space *.alwaysyoung.space
aomeya.com *.aomeya.com *.d708410776.aomeya.com
familynudism.club *.familynudism.club *.ww25.familynudism.club
*.ci-sandbox.financetown-ph.space financetown-ph.space *.financetown-ph.space
fluxenta.co *.fluxenta.co
giuriato.com *.giuriato.com *.vpn.giuriato.com
grandbase.io *.grandbase.io *.v2-testnet.grandbase.io
illeads.online *.illeads.online
isaiahfortoday.com *.isaiahfortoday.com *.ww38.isaiahfortoday.com
*.cloud.kamioooka.com kamioooka.com *.kamioooka.com
*.cd.lesfilles.com *.crm.lesfilles.com *.en.lesfilles.com *.its.lesfilles.com lesfilles.com *.lesfilles.com *.mba.lesfilles.com *.news.lesfilles.com *.proxy.lesfilles.com *.static.lesfilles.com *.usa.lesfilles.com *.videos.lesfilles.com *.work.lesfilles.com *.ww17.lesfilles.com *.ww25.lesfilles.com *.www.lesfilles.com
*.dl.lorddownload.com lorddownload.com *.lorddownload.com
louisiana.bio *.louisiana.bio *.random.louisiana.bio
m33chvisuals.com *.m33chvisuals.com *.www.m33chvisuals.com
*.mail.manomaya.in manomaya.in *.manomaya.in
*.cusano.marketing2china.eu marketing2china.eu *.marketing2china.eu
myp-news.online *.myp-news.online
*.mx.rijopleiding.com rijopleiding.com *.rijopleiding.com *.ww25.rijopleiding.com *.ww38.rijopleiding.com
sheiki.com *.sheiki.com *.test.sheiki.com *.ww11.sheiki.com
*.autodiscover.soundrental.online *.cpanel.soundrental.online *.cpcalendars.soundrental.online *.mail.soundrental.online *.mx.soundrental.online soundrental.online *.soundrental.online *.webdisk.soundrental.online *.webmail.soundrental.online
vwakesahu.tech *.vwakesahu.tech