Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=jjsm.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 28, 2026
Valid Until
July 27, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A1:23:63:39:E8:FB:F4:84:7C:F8:DF:EA:CE:6E:79:E1:58:A8:3C:81:6F:53:AB:7A:3C:87:42:40:29:85:49:52
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
demosignal.com *.demosignal.com *.a.demosignal.com *.admin.demosignal.com *.dev.demosignal.com *.rds.demosignal.com *.rdweb.demosignal.com *.remote.demosignal.com *.test.demosignal.com *.vpn.demosignal.com

Other domains in certificate

*.abfl.adityabrila.com *.abfrl.adityabrila.com *.ablbl.adityabrila.com adityabrila.com *.adityabrila.com *.bbfrl.adityabrila.com *.idea.adityabrila.com *.retail.adityabrila.com *.svatantra.adityabrila.com *.www.adityabrila.com
balls.com.au *.balls.com.au *.big.balls.com.au *.lick.balls.com.au
freedomsos.com *.freedomsos.com *.ww25.freedomsos.com
jjsm.shop *.jjsm.shop *.yyxsm.jjsm.shop
lendedsupport.co *.lendedsupport.co *.use.lendedsupport.co
*.ecp.louiesupply.com *.ex.louiesupply.com *.exmb.louiesupply.com *.inbox.louiesupply.com louiesupply.com *.louiesupply.com *.m.louiesupply.com *.mail01.louiesupply.com
*.app.ozar.pro *.claims.ozar.pro *.comune.ozar.pro ozar.pro *.ozar.pro
*.chief-invite.secswap.com *.scamper-public.secswap.com secswap.com *.secswap.com
*.api.sinrslrmznindrmleri.shop sinrslrmznindrmleri.shop *.sinrslrmznindrmleri.shop *.sitemap.sinrslrmznindrmleri.shop
*.a.spent.cc *.admin.spent.cc *.api.spent.cc *.app.spent.cc *.as.spent.cc *.assets.spent.cc *.blog.spent.cc *.cc.spent.cc *.cloud.spent.cc *.cv.spent.cc *.da.spent.cc *.demo.spent.cc *.dev.spent.cc *.disqus.spent.cc *.go.spent.cc *.hk.spent.cc *.hostmaster.spent.cc *.hyhmasitemaps.spent.cc *.jp.spent.cc *.jyjmidemo.spent.cc *.khqevcc.spent.cc *.m.spent.cc *.mail.spent.cc *.rmpmwxnfvkblog.spent.cc *.shop.spent.cc *.sitemap.spent.cc *.sitemaps.spent.cc spent.cc *.spent.cc *.test.spent.cc *.us.spent.cc *.vc.spent.cc *.wildcard.spent.cc *.work.spent.cc *.xnfvkblog.spent.cc *.yun.spent.cc