Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=mestredamonetizacao.com.br
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 14, 2026
Valid Until
April 14, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:8F:43:63:1A:8A:4E:57:EF:90:4A:61:78:53:7F:93:E0:A4:37:2F:2E:D1:79:04:8B:D0:1A:96:83:11:25:80
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
codigossagradosplus.net
*.codigossagradosplus.net
*.ww38.codigossagradosplus.net
bajarmp3gratis.club
*.bajarmp3gratis.club
*.cpcontacts.bajarmp3gratis.club
*.mail.bajarmp3gratis.club
*.644de90f0de2.codemail.xyz
codemail.xyz
*.codemail.xyz
*.mail.codemail.xyz
*.test.codemail.xyz
echssports.com
*.echssports.com
ecoomsam.store
*.ecoomsam.store
*.ww25.ecoomsam.store
*.cart.fmt.es
*.cccc.fmt.es
*.cer.fmt.es
*.ceres.fmt.es
*.cert.fmt.es
fmt.es
*.fmt.es
*.sede.fmt.es
*.sedecert.fmt.es
*.tert.fmt.es
forextradingsystem.co
*.forextradingsystem.co
*.ww38.forextradingsystem.co
illiteracy.au
*.illiteracy.au
isimplify.au
*.isimplify.au
*.ww25.isimplify.au
*.alpha.keepvid.org
keepvid.org
*.keepvid.org
*.preprod.keepvid.org
*.ww38.keepvid.org
*.ww4.keepvid.org
kotabrasil.com.br
*.kotabrasil.com.br
*.ns2.kotabrasil.com.br
*.ns3.kotabrasil.com.br
marchaparajesusguarulhos.com.br
*.marchaparajesusguarulhos.com.br
*.ns1.marchaparajesusguarulhos.com.br
mestredamonetizacao.com.br
*.mestredamonetizacao.com.br
*.ns1.mestredamonetizacao.com.br
*.ns2.mestredamonetizacao.com.br
*.airflow.mmvfilm.com
mmvfilm.com
*.mmvfilm.com
*.news.mmvfilm.com
*.shop.mmvfilm.com
*.community.modernmusic.com.au
*.hostmaster.modernmusic.com.au
*.mail.modernmusic.com.au
*.mail5.modernmusic.com.au
modernmusic.com.au
*.modernmusic.com.au
*.ww38.modernmusic.com.au
paymomoi.site
*.paymomoi.site
*.ww25.paymomoi.site
roofingandsidingservices144035.icu
*.roofingandsidingservices144035.icu
roofingandsidingservices523808.icu
*.roofingandsidingservices523808.icu
*.go.tripjar.us
tripjar.us
*.tripjar.us
truyengihotdo.net
*.truyengihotdo.net
*.ww25.truyengihotdo.net
weddingusa231913.icu
*.weddingusa231913.icu
*.cbiz2025.wpenginepowered.co
*.js.wpenginepowered.co
*.nau1.wpenginepowered.co
*.prodhsp.wpenginepowered.co
wpenginepowered.co
*.wpenginepowered.co
*.zfswitchesold.wpenginepowered.co
*.acc.wwwequateplus.com
wwwequateplus.com
*.wwwequateplus.com
Other domains in certificate