Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=avamovie12.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 73 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8E:91:6F:53:E1:98:C4:FE:48:F7:4D:60:50:5E:41:4D:F0:AA:81:3F:B0:3A:D1:E9:35:6E:04:52:02:31:18:33
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

86 domains
basdeo.com *.basdeo.com *.ww25.basdeo.com *.ww38.basdeo.com

Other domains in certificate

almadaestore.com *.almadaestore.com
anxietyclinical-trialsmental-health.click *.anxietyclinical-trialsmental-health.click *.ww25.anxietyclinical-trialsmental-health.click
artlane.org *.artlane.org
avamovie12.xyz *.avamovie12.xyz *.cicd.avamovie12.xyz
*.bet.betmatik0662.com betmatik0662.com *.betmatik0662.com *.m.betmatik0662.com
*.autoconfig.bombastical.com bombastical.com *.bombastical.com
buraqcollections.com *.buraqcollections.com
culinala.com *.culinala.com *.srv6.culinala.com
felknor.com *.felknor.com *.hostmaster.felknor.com *.mailer.felknor.com *.vpn.felknor.com
ghut.org *.ghut.org
glarestudios.click *.glarestudios.click
gorhensambaree.com *.gorhensambaree.com
historianopaint.com *.historianopaint.com
intcheevents.com *.intcheevents.com
jaguarbuses.com *.jaguarbuses.com *.ww25.jaguarbuses.com
jjmplumbing.co.uk *.jjmplumbing.co.uk
*.admin.kaati.com *.connectvpn.kaati.com kaati.com *.kaati.com
*.host186.knowledgeworkers.com *.host187.knowledgeworkers.com knowledgeworkers.com *.knowledgeworkers.com *.sslvpn.knowledgeworkers.com
*.app.restazen.site restazen.site *.restazen.site *.shop.restazen.site
*.api.slot404.site *.login.slot404.site slot404.site *.slot404.site *.www.slot404.site
sys569.com *.sys569.com
*.assets.thenewcomers.com *.hostmaster.thenewcomers.com thenewcomers.com *.thenewcomers.com *.ww1.thenewcomers.com *.ww25.thenewcomers.com *.ww38.thenewcomers.com
*.d9sc7.tirwrack.com *.ooh2z.tirwrack.com tirwrack.com *.tirwrack.com
*.demo.tucontador.com tucontador.com *.tucontador.com *.ww1.tucontador.com *.ww3.tucontador.com
tuimagenviral.com *.tuimagenviral.com
zapatoscastilla.com *.zapatoscastilla.com