Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=coding-panda.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 14, 2025
Valid Until
March 14, 2026
32 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:FA:A0:2F:F3:27:EB:3F:DA:37:7E:B4:21:93:83:CF:18:1B:98:F1:67:FA:D5:4E:3F:ED:14:F2:E8:02:3E:60
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
coding-panda.com
*.coding-panda.com
*.circle.coding-panda.com
*.ww25.coding-panda.com
25th.studio
*.25th.studio
*.2x7km.blessingsnursery.com
*.4b8.blessingsnursery.com
blessingsnursery.com
*.blessingsnursery.com
*.cxvt.blessingsnursery.com
*.hgxy.blessingsnursery.com
*.hre.blessingsnursery.com
*.mail.blessingsnursery.com
*.rgfn.blessingsnursery.com
*.webmail.blessingsnursery.com
bqg82.com
*.bqg82.com
c3028bbe-0dc4-4407-b0d0-2a7fdd2bdf00.com
*.c3028bbe-0dc4-4407-b0d0-2a7fdd2bdf00.com
*.ww25.c3028bbe-0dc4-4407-b0d0-2a7fdd2bdf00.com
ekstrabladet.live
*.ekstrabladet.live
*.art.luxresort.online
*.auth.luxresort.online
*.dns.luxresort.online
*.eml.luxresort.online
luxresort.online
*.luxresort.online
*.mail12.luxresort.online
*.mail3.luxresort.online
*.mail6.luxresort.online
*.mailgate.luxresort.online
*.mailsrv.luxresort.online
*.ms.luxresort.online
*.mx3.luxresort.online
*.mx4.luxresort.online
*.mxs.luxresort.online
*.newmail.luxresort.online
*.outmail.luxresort.online
*.po.luxresort.online
*.post.luxresort.online
*.relay.luxresort.online
*.relay2.luxresort.online
*.seed.luxresort.online
*.smtpseguro.luxresort.online
*.ssl.luxresort.online
*.tiger.luxresort.online
*.zmail.luxresort.online
*.delicious.mybespokegift.com
mybespokegift.com
*.mybespokegift.com
*.sundaybrunch4u.mybespokegift.com
*.tasty.mybespokegift.com
*.1.news12.co
*.bronx.news12.co
*.brooklyn.news12.co
*.connecticut.news12.co
*.hostmaster.news12.co
*.hudsonvalley.news12.co
*.longisland.news12.co
*.newjersey.news12.co
news12.co
*.news12.co
*.newyork.news12.co
*.projects.news12.co
*.remote.news12.co
*.westchester.news12.co
*.2frakhoi.rakhoi10.tv
*.ie.rakhoi10.tv
rakhoi10.tv
*.rakhoi10.tv
*.tructiep.rakhoi10.tv
*.tructiep11.rakhoi10.tv
*.tructiep4.rakhoi10.tv
*.tructiep5.rakhoi10.tv
*.tructiep7.rakhoi10.tv
*.wildcard.rakhoi10.tv
*.docs.sellingleaks.xyz
*.random.sellingleaks.xyz
sellingleaks.xyz
*.sellingleaks.xyz
*.server.sellingleaks.xyz
*.store.sellingleaks.xyz
web0987a111.com
*.web0987a111.com
web0987a222.com
*.web0987a222.com
web0987a333.com
*.web0987a333.com
Other domains in certificate