76/100 SECURITY SCORE

Certificate Information

Subject
CN=forexcards.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 01, 2026
Valid Until
July 30, 2026 56 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:DA:46:D6:99:F2:B4:65:2D:3E:A0:E1:E2:F6:5C:18:7F:BA:2B:23:1A:1C:5D:68:E9:B3:F1:90:83:E9:2E:E8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
goodqualitypot.shop *.goodqualitypot.shop *.3sj6sj.goodqualitypot.shop *.api.goodqualitypot.shop *.app.goodqualitypot.shop *.btzusgri.goodqualitypot.shop *.dev.goodqualitypot.shop *.stg.goodqualitypot.shop *.test.goodqualitypot.shop *.web.goodqualitypot.shop

Other domains in certificate

dvndns.org *.dvndns.org *.e08592combumax.dvndns.org *.e08592combunax.dvndns.org *.facturacionelrda2.dvndns.org *.g8icf.dvndns.org *.kardara.dvndns.org *.mamnotrungtu.dvndns.org *.ndfsk.dvndns.org *.nipsnvr.dvndns.org *.sputnik-band.dvndns.org *.sutilago.dvndns.org *.toxi.dvndns.org
*.admin.eggdrops.org *.api.eggdrops.org *.app.eggdrops.org *.assets.eggdrops.org *.axjzbwp2.eggdrops.org *.blog.eggdrops.org *.demo.eggdrops.org *.dev.eggdrops.org eggdrops.org *.eggdrops.org *.hostmaster.eggdrops.org *.irc.eggdrops.org *.pwnke7.eggdrops.org *.shop.eggdrops.org *.wp2.eggdrops.org
*.crm.forexcards.com forexcards.com *.forexcards.com *.forum.forexcards.com *.hostmaster.forexcards.com *.sitemap.forexcards.com *.ww1.forexcards.com *.ww16.forexcards.com *.ww25.forexcards.com *.ww38.forexcards.com *.ww5.forexcards.com
*.83c9a1f9-f094-4e02-88f4-92249b08e289.madu88.buzz *.app.madu88.buzz *.c418f89f-938e-4d88-bbae-40ea29b8b16f.madu88.buzz *.hvf64y.madu88.buzz madu88.buzz *.madu88.buzz
mheepooh168h.com *.mheepooh168h.com *.prod1.mheepooh168h.com *.prod2.mheepooh168h.com *.prod3.mheepooh168h.com
*.hostmaster.morethanbeauty.it morethanbeauty.it *.morethanbeauty.it *.webdisk.morethanbeauty.it
paybycrypto.host *.paybycrypto.host *.servers.paybycrypto.host
*.cdn.pointzinzdrivx.pro *.cfp.pointzinzdrivx.pro pointzinzdrivx.pro *.pointzinzdrivx.pro *.suite.pointzinzdrivx.pro
*.api.thecolblas.com *.staging.thecolblas.com thecolblas.com *.thecolblas.com *.vpn.thecolblas.com *.www.thecolblas.com
*.api.thecoldlasb.com thecoldlasb.com *.thecoldlasb.com *.www.thecoldlasb.com
*.shooters.urbnfresh.com *.shotby.urbnfresh.com urbnfresh.com *.urbnfresh.com
*.m.xn--lhr59cd00aqhc.com xn--lhr59cd00aqhc.com *.xn--lhr59cd00aqhc.com