79/100 SECURITY SCORE

Certificate Information

Subject
CN=zathurasolutions.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 30, 2026
Valid Until
April 30, 2026 70 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
45:7C:67:1E:5A:5A:BE:24:5D:CF:61:F6:DA:DF:08:66:71:C9:FD:A6:61:11:48:0A:70:AC:80:7B:90:30:03:28
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

91 domains
spacesync.com *.spacesync.com *.exchange.spacesync.com

Other domains in certificate

0hs8ax.buzz *.0hs8ax.buzz
2laqgc.shop *.2laqgc.shop
74324.pizza *.74324.pizza
annarestaurant.com *.annarestaurant.com
blueboxes.net *.blueboxes.net
bssh.in *.bssh.in
chiedimidisara.com *.chiedimidisara.com *.ww25.chiedimidisara.com
contract-xhelp.com *.contract-xhelp.com
daftsex.co *.daftsex.co
electric-job-grey-old-19.click *.electric-job-grey-old-19.click
eucatlarsome.com *.eucatlarsome.com
everlinecoatingscarolina.com *.everlinecoatingscarolina.com
fatboy-hkb77.cfd *.fatboy-hkb77.cfd
guardxcel.com *.guardxcel.com
horis.sbs *.horis.sbs
managementdegreeuk490501.icu *.managementdegreeuk490501.icu
marketingveloxmedia.com *.marketingveloxmedia.com
mathminutes.com *.mathminutes.com
maxwin138i.com *.maxwin138i.com
missfux.net *.missfux.net
narsyou.com *.narsyou.com
nascentstrategies.com *.nascentstrategies.com
nmuyow.biz *.nmuyow.biz
nokynz.bid *.nokynz.bid
nom1438crt.com *.nom1438crt.com
noneothergrp.com *.noneothergrp.com
noneotherteam.com *.noneotherteam.com
ogomovies.to *.ogomovies.to
outdoorlighting549986.icu *.outdoorlighting549986.icu
play-legend-crossing.xyz *.play-legend-crossing.xyz
play-sonic-matrix.xyz *.play-sonic-matrix.xyz
rajartp1-suster123.click *.rajartp1-suster123.click
rodawin88.com *.rodawin88.com
rtp10-ug300.shop *.rtp10-ug300.shop
sagasofstones.com *.sagasofstones.com *.test.sagasofstones.com
tailoredmenswear.site *.tailoredmenswear.site
tehirnl.cfd *.tehirnl.cfd
tentativesjours.com *.tentativesjours.com
travguides.com *.travguides.com
v00hol4.cyou *.v00hol4.cyou
vibeeleaf.com *.vibeeleaf.com
xn--5usy22d.cc *.xn--5usy22d.cc
zathurasolutions.com *.zathurasolutions.com