76/100 SECURITY SCORE

Certificate Information

Subject
CN=o-roblox.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 18, 2026
Valid Until
July 17, 2026 70 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
63:31:BB:7F:43:83:ED:AA:73:B8:73:F1:4C:03:54:61:6A:6B:94:18:DB:29:46:DF:36:66:53:62:3F:C7:3C:05
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
organiodcomputer.com *.organiodcomputer.com *.dash.organiodcomputer.com

Other domains in certificate

4849w.co *.4849w.co
919913.gdn *.919913.gdn
avenu.studio *.avenu.studio
customspell.info *.customspell.info *.mailer.customspell.info
dynavextraderai.net *.dynavextraderai.net
focusedcareergoals.live *.focusedcareergoals.live
hotelraj.sk *.hotelraj.sk *.skwww.hotelraj.sk *.website.hotelraj.sk
j7wu9ixq0e170425ma4.cfd *.j7wu9ixq0e170425ma4.cfd
lottopickwinnings.quest *.lottopickwinnings.quest
maxbad.live *.maxbad.live
nomadlynk.com *.nomadlynk.com
*.dev.o-roblox.com o-roblox.com *.o-roblox.com
rockwellproductions.com *.rockwellproductions.com
spitzkante.com *.spitzkante.com
thetvappp.to *.thetvappp.to *.ww25.thetvappp.to
uruecker.com *.uruecker.com
uweimann.com *.uweimann.com
veltonis.com *.veltonis.com
vkuphal.com *.vkuphal.com
vpredovic.com *.vpredovic.com
vratke.com *.vratke.com
vschowalter.com *.vschowalter.com
vulkanustars-zb.cyou *.vulkanustars-zb.cyou
vwatsica.com *.vwatsica.com
vww39.icu *.vww39.icu
wcvlk.town *.wcvlk.town
weddingdreamsmith.beauty *.weddingdreamsmith.beauty
weddingpinnaclepros.beauty *.weddingpinnaclepros.beauty
weekdayagentic.com *.weekdayagentic.com
whiteironforest.com *.whiteironforest.com
wprohaska.com *.wprohaska.com
wtslc.town *.wtslc.town
www777kj.com *.www777kj.com
xernser.com *.xernser.com
xkreiger.com *.xkreiger.com
xn--bqsp71i8wl.com *.xn--bqsp71i8wl.com
xvonrueden.com *.xvonrueden.com
yblanda.com *.yblanda.com
ycassin.com *.ycassin.com
ydach.com *.ydach.com
ypfannerstill.com *.ypfannerstill.com