76/100 SECURITY SCORE

Certificate Information

Subject
CN=duoduogo123.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 25, 2026
Valid Until
August 23, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
16:9B:E7:5F:2D:4B:AC:85:37:32:13:BB:95:1E:23:34:68:72:B8:2F:8B:CC:66:57:B3:B8:CF:F0:F9:63:CC:E9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
mr2trader.com *.mr2trader.com *.aunt.mr2trader.com *.box.mr2trader.com *.conditioner.mr2trader.com *.cuttlefish.mr2trader.com *.dad.mr2trader.com *.easy.mr2trader.com *.factory.mr2trader.com *.kid.mr2trader.com *.lobster.mr2trader.com *.long.mr2trader.com *.neighbour.mr2trader.com *.off.mr2trader.com *.ohn.mr2trader.com *.paint.mr2trader.com *.post.mr2trader.com *.snake.mr2trader.com *.sprout.mr2trader.com *.water.mr2trader.com

Other domains in certificate

868vip.vin *.868vip.vin *.adm.868vip.vin *.api.868vip.vin *.external.868vip.vin
*.7.btb314.cc btb314.cc *.btb314.cc
*.38.duoduogo123.com *.de.duoduogo123.com duoduogo123.com *.duoduogo123.com *.es.duoduogo123.com *.sslvpn2.duoduogo123.com *.vpn2.duoduogo123.com *.www.duoduogo123.com
giftcardcmall.com *.giftcardcmall.com *.mygift.giftcardcmall.com
*.apertura-de-la-igles.iglesiadedios7th.com *.cena-del-seor.iglesiadedios7th.com *.dedicacion.iglesiadedios7th.com iglesiadedios7th.com *.iglesiadedios7th.com *.inmer-mari.iglesiadedios7th.com
*.api.oeq.in *.dev.oeq.in *.mail.oeq.in oeq.in *.oeq.in *.random.oeq.in *.test.oeq.in *.www.oeq.in
*.account.rocketcrewaltcoinreserve.com rocketcrewaltcoinreserve.com *.rocketcrewaltcoinreserve.com
*.anzermacunu.saglikdepo.site *.bittimsampuan.saglikdepo.site *.camcatlaktamir.saglikdepo.site *.diabetvakfi.saglikdepo.site *.dubaikahvesi.saglikdepo.site *.kadimarzuyagi.saglikdepo.site *.koreanginseng.saglikdepo.site *.panteriksir.saglikdepo.site saglikdepo.site *.saglikdepo.site *.snailmaxserum.saglikdepo.site *.sugarofficial.saglikdepo.site *.tanzimkoyu.saglikdepo.site *.tuydokucuset.saglikdepo.site *.zendrops.saglikdepo.site *.zerdecallifting.saglikdepo.site *.zerosmokeseti.saglikdepo.site
*.avito.scabi.com *.portainer.scabi.com scabi.com *.scabi.com *.sitemap.scabi.com
*.box.tokufriends.net *.boxreborn.tokufriends.net *.eternity.tokufriends.net *.hikari.tokufriends.net *.perfectzect.tokufriends.net *.superclassicos.tokufriends.net *.tbreborn.tokufriends.net *.tokubox.tokufriends.net tokufriends.net *.tokufriends.net *.torrents.tokufriends.net *.tube.tokufriends.net