79/100 SECURITY SCORE

Certificate Information

Subject
CN=10913.locker
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
15:98:31:47:11:42:54:EA:A7:53:9F:BB:D5:C0:7C:83:EF:9E:8A:6D:E5:9C:D1:FD:6C:B5:35:2C:45:7D:9D:74
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bingelyplaylist.com *.bingelyplaylist.com

Other domains in certificate

10913.locker *.10913.locker
11846.pictures *.11846.pictures
anaksehat.com *.anaksehat.com
app-jianyihe.com *.app-jianyihe.com
appls.me *.appls.me
aquariumtour.com *.aquariumtour.com
arbaud.com *.arbaud.com
avatar.top *.avatar.top
axlkj.me *.axlkj.me
bananasplit.com.au *.bananasplit.com.au
battleknight.network *.battleknight.network
bayrockglobalexpress.com *.bayrockglobalexpress.com
beautifulmind.com.au *.beautifulmind.com.au
betonred-pt.vip *.betonred-pt.vip
blockchaintechnologies.au *.blockchaintechnologies.au
boomerangturkey.com *.boomerangturkey.com
bpqav.tv *.bpqav.tv
brilliantthink.com *.brilliantthink.com
brine.ai *.brine.ai
bseek.io *.bseek.io
btcgreece.com *.btcgreece.com
bucharestfood.com *.bucharestfood.com
burgundynigltd.com *.burgundynigltd.com
bveirk.bid *.bveirk.bid
cancertreatments693426.icu *.cancertreatments693426.icu
capiche.com.au *.capiche.com.au
cg02.top *.cg02.top
chondroitin.com.au *.chondroitin.com.au
commercial-cleaning132793.icu *.commercial-cleaning132793.icu
constructioncontractors079729.icu *.constructioncontractors079729.icu
coskunsu.com *.coskunsu.com
cxg72.top *.cxg72.top
digitalreading.com *.digitalreading.com
ehleiter.com *.ehleiter.com
fitnessintensitycrew.run *.fitnessintensitycrew.run
fpet1pof.top *.fpet1pof.top
freejobalert.app *.freejobalert.app
gamifyblueprint.com *.gamifyblueprint.com
gatlinburg.blog *.gatlinburg.blog
gilando.com *.gilando.com
goodnewsbible.app *.goodnewsbible.app
gztmc.gdn *.gztmc.gdn
haseluenne.com *.haseluenne.com
hhlx4pc.top *.hhlx4pc.top