Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=1-xz-1.space
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 12, 2026
Valid Until
June 10, 2026 51 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C2:92:B4:30:45:B1:35:51:F5:07:77:14:B7:2D:D0:8B:BC:3A:4C:73:D2:64:06:D6:9D:BE:48:2A:52:D6:98:F5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
crete.com.au *.crete.com.au

Other domains in certificate

1-xz-1.space *.1-xz-1.space
acdc.com.au *.acdc.com.au *.ww25.acdc.com.au
barlahalte.com *.barlahalte.com
bhopalnews.co.in *.bhopalnews.co.in
computerrepairfinder.com.au *.computerrepairfinder.com.au
corsages.com.au *.corsages.com.au
coverd.com.au *.coverd.com.au
cyclingsocks.com.au *.cyclingsocks.com.au
dotla.info *.dotla.info
farefrenzy.com *.farefrenzy.com
freewebdesign.com.au *.freewebdesign.com.au
guilt.com.au *.guilt.com.au
happylocal.com.au *.happylocal.com.au
haulsafe.com.au *.haulsafe.com.au
heroine.com.au *.heroine.com.au
himachalpradeshnews.co.in *.himachalpradeshnews.co.in
honeymooncruise.com.au *.honeymooncruise.com.au
houserelocation.au *.houserelocation.au
hyena.com.au *.hyena.com.au
internettelevision.com.au *.internettelevision.com.au
lawshield.com.au *.lawshield.com.au
microsoftsoftware.com *.microsoftsoftware.com
mirrormyvideo.com *.mirrormyvideo.com
mobilegamestools.top *.mobilegamestools.top
my-nikki.com *.my-nikki.com *.ww25.my-nikki.com *.ww38.my-nikki.com
nationalaffairs.com.au *.nationalaffairs.com.au
nuggets.com.au *.nuggets.com.au
posco.com.au *.posco.com.au
q-liquor.com *.q-liquor.com
skindeepbodyart.net *.skindeepbodyart.net
slow.au *.slow.au
*.autoconfig.smjp07.info *.autodiscover.smjp07.info *.rustore.smjp07.info smjp07.info *.smjp07.info
snuggleblanket.com.au *.snuggleblanket.com.au
softwareconsultants.com.au *.softwareconsultants.com.au
solitairediamond.com.au *.solitairediamond.com.au
sportshypnosis.com.au *.sportshypnosis.com.au
teaparties.com.au *.teaparties.com.au
thoughtsbytash.com *.thoughtsbytash.com
transportquote.com.au *.transportquote.com.au
udiobeta.com *.udiobeta.com
vergine-baccano.com *.vergine-baccano.com