Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=bonge.be
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 04, 2026
Valid Until
September 02, 2026 68 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BA:C5:B7:2F:A9:16:09:B3:EC:5B:3F:C0:9F:77:AA:39:2D:65:41:5F:50:EB:89:6C:53:BB:2E:7D:9D:60:4A:80
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
joust.it *.joust.it *.dashboards.joust.it *.hostmaster.joust.it *.stats.joust.it *.workmanatdailywages.joust.it

Other domains in certificate

ax9om.trade *.ax9om.trade *.test.ax9om.trade
beer-r.com *.beer-r.com *.rd.beer-r.com *.remote.beer-r.com *.smtp.beer-r.com
*.admin.bonge.be *.bebacwel.bonge.be bonge.be *.bonge.be *.d7915c0a-8ed8-43b0-9c98-2045d504bca3.bonge.be *.dev.bonge.be *.emv1.bonge.be *.ftp.bonge.be *.mail.bonge.be *.mms.bonge.be *.myaccount.bonge.be *.smtp.bonge.be *.webmail.bonge.be *.www.bonge.be
brasilcast.xyz *.brasilcast.xyz *.player.brasilcast.xyz
*.api.dewa505wd.cyou *.app.dewa505wd.cyou *.assets.dewa505wd.cyou dewa505wd.cyou *.dewa505wd.cyou *.test.dewa505wd.cyou *.www.dewa505wd.cyou
fhgmin.com *.fhgmin.com
*.346b0b97-801e-4b1e-be1f-2d556f3036d4.joyeriasanchez.vip joyeriasanchez.vip *.joyeriasanchez.vip *.ww11.joyeriasanchez.vip *.ww38.joyeriasanchez.vip
*.hostmaster.mowers.mx *.m.mowers.mx mowers.mx *.mowers.mx *.www.mowers.mx
raff.live *.raff.live *.ww38.raff.live
*.dev.rdxhd.info *.email.rdxhd.info *.m.rdxhd.info rdxhd.info *.rdxhd.info *.sandbox.rdxhd.info *.visualizations.rdxhd.info *.viz.rdxhd.info *.ww31.rdxhd.info *.ww38.rdxhd.info *.www1.rdxhd.info
*.hostmaster.singlegirlshd.com singlegirlshd.com *.singlegirlshd.com
*.ns2.superfast.life superfast.life *.superfast.life
*.staging.voxerpics.sbs *.test.voxerpics.sbs voxerpics.sbs *.voxerpics.sbs
*.app.xn--6oq.com *.cus8.xn--6oq.com *.shop.xn--6oq.com *.spp.xn--6oq.com xn--6oq.com *.xn--6oq.com
*.ckbgcdemos.zyake.com *.cloud.zyake.com *.m.zyake.com *.qfyzutracking.zyake.com *.rdweb.zyake.com *.remote.zyake.com *.sjiws3g.zyake.com *.uwtzvstatus.zyake.com zyake.com *.zyake.com