76/100 SECURITY SCORE

Certificate Information

Subject
CN=mvpstocks.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 28, 2026
Valid Until
April 28, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9C:35:10:7E:1E:8A:6B:BD:B6:2A:3C:DD:E8:EE:B2:6D:3D:C6:EA:01:45:AE:27:AA:9C:7C:AD:E1:27:BB:0C:62
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
customposterframes.com *.customposterframes.com *.chat.customposterframes.com *.co.customposterframes.com *.comune.customposterframes.com *.director.customposterframes.com *.education.customposterframes.com *.extranet.customposterframes.com *.film.customposterframes.com *.foto.customposterframes.com *.galeria.customposterframes.com *.helpdesk.customposterframes.com *.letter.customposterframes.com *.mail.customposterframes.com *.med.customposterframes.com *.mobil.customposterframes.com *.origin.customposterframes.com *.panel.customposterframes.com *.pro.customposterframes.com *.project.customposterframes.com *.users.customposterframes.com *.vb.customposterframes.com *.webmail.customposterframes.com

Other domains in certificate

atilganproperty.com *.atilganproperty.com *.com.atilganproperty.com
*.adserver.brightfocals.com brightfocals.com *.brightfocals.com *.by.brightfocals.com *.drupal.brightfocals.com *.galleries.brightfocals.com *.gmail.brightfocals.com *.music.brightfocals.com *.newsite.brightfocals.com *.ww25.brightfocals.com *.ww38.brightfocals.com
drycases.com *.drycases.com *.ww25.drycases.com
jessica-patreon.online *.jessica-patreon.online *.ww25.jessica-patreon.online
*.app.mvpstocks.com *.backup.mvpstocks.com *.beta.mvpstocks.com *.demo.mvpstocks.com *.edgjkmeradmin.mvpstocks.com *.forums.mvpstocks.com *.fw.mvpstocks.com *.guiweb.mvpstocks.com *.help.mvpstocks.com *.lhw4ac4gr0cuwcg7.mvpstocks.com *.lkyciqmngosdbbvnivudforums.mvpstocks.com *.mail.mvpstocks.com mvpstocks.com *.mvpstocks.com *.nav.mvpstocks.com *.navigation.mvpstocks.com *.nivudforums.mvpstocks.com *.store.mvpstocks.com *.temp.mvpstocks.com *.test.mvpstocks.com *.vpn.mvpstocks.com *.xcynwdev.mvpstocks.com
*.admin.outlooki.com *.mx1.outlooki.com outlooki.com *.outlooki.com *.prod.outlooki.com *.protection.outlooki.com *.ww38.outlooki.com
pethotels.org *.pethotels.org *.ww38.pethotels.org
*.dan.tldbasics.com *.hostmaster.tldbasics.com tldbasics.com *.tldbasics.com *.ww25.tldbasics.com *.ww38.tldbasics.com *.www.tldbasics.com
*.elearning.travelcages.com *.photo.travelcages.com *.sandbox.travelcages.com *.software.travelcages.com *.staging.travelcages.com travelcages.com *.travelcages.com *.videos.travelcages.com