76/100 SECURITY SCORE

Certificate Information

Subject
CN=1win-casino-official-site.cfd
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026 85 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:E0:C1:B9:41:57:42:E2:24:C4:43:9C:AA:AB:5E:08:83:07:F1:0A:5F:C9:27:E6:94:8E:DC:48:62:1D:8A:C1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
crowdoffering.com *.crowdoffering.com

Other domains in certificate

1win-casino-official-site.cfd *.1win-casino-official-site.cfd
computertrainingschool.com *.computertrainingschool.com
controladores.com *.controladores.com
crazymarketing.com.au *.crazymarketing.com.au
croisiressurlerhne593972.icu *.croisiressurlerhne593972.icu
cyberflying.com *.cyberflying.com
denig.com *.denig.com
destinationweddingswish.beauty *.destinationweddingswish.beauty
dieskau.com *.dieskau.com
discovervacationspot.xyz *.discovervacationspot.xyz
diyjourneychannel.xyz *.diyjourneychannel.xyz
dlloans.com *.dlloans.com
docksandmore.com *.docksandmore.com
dolmat.com *.dolmat.com
domec.com *.domec.com
dramacamp.com *.dramacamp.com
egozi.com *.egozi.com
ehremodeling.com *.ehremodeling.com
elgransecreto.com *.elgransecreto.com
elherradero.com *.elherradero.com
embracedweddingsgatherings.beauty *.embracedweddingsgatherings.beauty
empilhadeiras.com *.empilhadeiras.com
favereau.com *.favereau.com
finesuit.com *.finesuit.com
fitnessvibeessentials.run *.fitnessvibeessentials.run
funwari.com *.funwari.com
ganza.net *.ganza.net
garrobos.com *.garrobos.com
gaylene.com *.gaylene.com
getsalesassemblyservice.com *.getsalesassemblyservice.com
gilgomez.com *.gilgomez.com
girlsin.com *.girlsin.com
glorypark.com *.glorypark.com
gorzko.com *.gorzko.com
grandestailles.com *.grandestailles.com
greenthumbsanctuary.live *.greenthumbsanctuary.live
harmison.com *.harmison.com
hibah.com *.hibah.com
higherdef.com *.higherdef.com
homegardenexperts.xyz *.homegardenexperts.xyz
homeloansforyou.com *.homeloansforyou.com
homepositions.com *.homepositions.com
*.mymail.schwarzenbach.com schwarzenbach.com *.schwarzenbach.com