76/100 SECURITY SCORE

Certificate Information

Subject
CN=bnb85.cc
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 30, 2026
Valid Until
July 29, 2026 72 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:96:82:DD:08:16:28:E8:B1:AD:AA:F9:E8:6C:0C:EC:E2:88:0F:DF:48:E6:BA:A7:97:58:8F:E8:F0:60:87:8A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
cenfuegosbots.com *.cenfuegosbots.com

Other domains in certificate

baldmoves.company *.baldmoves.company
banteng369.baby *.banteng369.baby
banteng369luckycandy.cyou *.banteng369luckycandy.cyou
beelinestudios.com *.beelinestudios.com
blowingblog.com *.blowingblog.com
bnb222.cc *.bnb222.cc
bnb85.cc *.bnb85.cc
bnb87.cc *.bnb87.cc
bnb92.cc *.bnb92.cc
bongdaluc2.com *.bongdaluc2.com
bongwon.com *.bongwon.com
boost-marketing.co *.boost-marketing.co
booststack.xyz *.booststack.xyz
brentwoodgaragedoorrepair.com *.brentwoodgaragedoorrepair.com
bumery.info *.bumery.info
burstdrinks.com *.burstdrinks.com
businessbanque.com *.businessbanque.com
bybit.info *.bybit.info
byrddesign.com *.byrddesign.com
bzook8.cyou *.bzook8.cyou
c2e27fb76f30492f.com *.c2e27fb76f30492f.com
c56ca5dc002f3415.com *.c56ca5dc002f3415.com
c854b11fb3a42a53.com *.c854b11fb3a42a53.com
callmefox.com *.callmefox.com
calmforge.info *.calmforge.info
calypsohotel.info *.calypsohotel.info
cannabism3nu.com *.cannabism3nu.com
carolinasappliances.com *.carolinasappliances.com
cashgame168i.com *.cashgame168i.com
cashgame168spin.com *.cashgame168spin.com
cce11738fa25f771.com *.cce11738fa25f771.com
cd837630442e6f33.com *.cd837630442e6f33.com
cf97f8bc19e62cd7.com *.cf97f8bc19e62cd7.com
cgwang2.cn *.cgwang2.cn
charmofnature.com *.charmofnature.com
checkdubslabs.com *.checkdubslabs.com
cienfuegosai.info *.cienfuegosai.info
cnftrading.com *.cnftrading.com
coldvia.info *.coldvia.info
collectcartier.com *.collectcartier.com
coniferx.com *.coniferx.com
consortimafrica.com *.consortimafrica.com
creatorventure.org *.creatorventure.org
crsmot.info *.crsmot.info