76/100 SECURITY SCORE

Certificate Information

Subject
CN=144331.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 26, 2026
Valid Until
August 24, 2026 72 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E9:3C:B2:05:B3:75:54:94:79:10:70:55:0C:BF:00:C5:82:D6:38:26:35:9F:A5:20:FA:B0:76:84:0A:64:44:69
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
webpos.co *.webpos.co *.activation.webpos.co *.arajen.webpos.co

Other domains in certificate

144331.xyz *.144331.xyz
autorizzate.com *.autorizzate.com *.backend.autorizzate.com *.bi.autorizzate.com *.chart.autorizzate.com *.demo.autorizzate.com *.dev.autorizzate.com *.development-superset.autorizzate.com *.metrics.autorizzate.com *.photos.autorizzate.com *.redash.autorizzate.com *.staging.autorizzate.com *.stats.autorizzate.com *.superset.autorizzate.com *.workflow.autorizzate.com
bigal.co *.bigal.co *.cdn.bigal.co *.www.bigal.co
*.apps.destinosradical.com *.backend.destinosradical.com destinosradical.com *.destinosradical.com *.test.destinosradical.com
*.i29ojs.kurbanbil.info kurbanbil.info *.kurbanbil.info
lufi.store *.lufi.store
*.7347b92f-4e58-4d26-9339-f8435eb7b99a.mergepdf.free *.app.mergepdf.free *.backup.mergepdf.free *.dev.mergepdf.free mergepdf.free *.mergepdf.free *.new.mergepdf.free *.uat.mergepdf.free
*.admin.quickbid.it *.app.quickbid.it *.backend.quickbid.it *.demo.quickbid.it quickbid.it *.quickbid.it
*.apps.reso.im reso.im *.reso.im *.www.reso.im
sydney-auckland-cruises-aus.sbs *.sydney-auckland-cruises-aus.sbs
syhho.town *.syhho.town
sylkandira.cfd *.sylkandira.cfd
synjunction.com *.synjunction.com
thkun.cn *.thkun.cn
thrivefitnessinsight.club *.thrivefitnessinsight.club
tiaueu.com *.tiaueu.com
top10casinogamesonline.top *.top10casinogamesonline.top
travelempowerment.live *.travelempowerment.live
truetastenavigators.food *.truetastenavigators.food
truetraveladvisory.live *.truetraveladvisory.live
truist-global.com *.truist-global.com
trustedgrains.food *.trustedgrains.food
trustedtraveladventures.live *.trustedtraveladventures.live
trustedtravelconcepts.live *.trustedtravelconcepts.live
trustedvoyageroute.live *.trustedvoyageroute.live
trustfoodadvisor.food *.trustfoodadvisor.food
trustworthydiyfocus.live *.trustworthydiyfocus.live