76/100 SECURITY SCORE

Certificate Information

Subject
CN=cajuncousins.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 01, 2026
Valid Until
May 02, 2026 67 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C1:62:9E:7A:98:36:BF:E9:6A:82:C4:B2:EE:95:1F:E2:13:CA:15:D5:54:FC:2B:E7:F2:AD:0D:B4:3A:8E:16:55
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
creativesolutions.com.au *.creativesolutions.com.au

Other domains in certificate

broasty.com *.broasty.com
cajuncousins.com *.cajuncousins.com
callofdating.life *.callofdating.life
cfdtaktik88.cfd *.cfdtaktik88.cfd
click-wiz.tech *.click-wiz.tech
coderlab.io *.coderlab.io
countallvotes.org *.countallvotes.org
dave-lee.org *.dave-lee.org
dawnwind.org *.dawnwind.org
deepstrategy.xyz *.deepstrategy.xyz
doharestaurant.com *.doharestaurant.com
empowerworklife.site *.empowerworklife.site
for.fm *.for.fm
funnelblick.com *.funnelblick.com
goxl1f1.cyou *.goxl1f1.cyou
hardrockmx.com *.hardrockmx.com
howtocosplay.com *.howtocosplay.com
ifriquia.com *.ifriquia.com
instantdirectdepositloanswithnocre070899.icu *.instantdirectdepositloanswithnocre070899.icu
investmentservices864062.icu *.investmentservices864062.icu
invisibility.org *.invisibility.org
invisibledentalaligners219298.icu *.invisibledentalaligners219298.icu
isaiahrabadad.com *.isaiahrabadad.com
kuntibet.com *.kuntibet.com
leon-zerkalo-ge9s.xyz *.leon-zerkalo-ge9s.xyz
leon-zerkalo-ydu2.xyz *.leon-zerkalo-ydu2.xyz
leonbets-casino-0brr.xyz *.leonbets-casino-0brr.xyz
lettucegroup.com *.lettucegroup.com
mci-digitools.com *.mci-digitools.com
melbournedoctors.com.au *.melbournedoctors.com.au
minato-ward-479613859.click *.minato-ward-479613859.click
minimally-invasive-446867686.click *.minimally-invasive-446867686.click
neolifetech.shop *.neolifetech.shop
nhathuy.com *.nhathuy.com
omrjy.kaufen *.omrjy.kaufen
play-ember-ward.xyz *.play-ember-ward.xyz
play-star-district.xyz *.play-star-district.xyz
plumbingsupply.com.au *.plumbingsupply.com.au
poplarbowl.com *.poplarbowl.com
posig.com *.posig.com
powerarenachurch.org *.powerarenachurch.org
r0mit1y.cyou *.r0mit1y.cyou
roseandfox.pet *.roseandfox.pet
sale-mrpunketh.com *.sale-mrpunketh.com