76/100 SECURITY SCORE

Certificate Information

Subject
CN=bridalshow.in
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 04, 2026
Valid Until
September 02, 2026 71 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8C:C2:3C:BC:90:7C:4E:2A:71:E2:6B:1E:ED:21:97:CC:AD:E2:0E:9E:D9:49:BC:BF:31:0D:7C:1B:7F:53:97:0D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
halftidestudio.com *.halftidestudio.com *.8xbr01.halftidestudio.com *.app.halftidestudio.com *.dev.halftidestudio.com *.www.halftidestudio.com

Other domains in certificate

*.app.beddennl.com beddennl.com *.beddennl.com *.cicd.beddennl.com *.dev.beddennl.com
bridalshow.in *.bridalshow.in *.dev.bridalshow.in *.support.bridalshow.in
*.admin.creative-portfolios.com *.api.creative-portfolios.com *.app.creative-portfolios.com *.backend.creative-portfolios.com creative-portfolios.com *.creative-portfolios.com *.demo.creative-portfolios.com *.dev.creative-portfolios.com *.ffffffffffff.creative-portfolios.com *.hostmaster.creative-portfolios.com *.mobile.creative-portfolios.com *.staging.creative-portfolios.com *.webmail.creative-portfolios.com *.ww1.creative-portfolios.com *.ww12.creative-portfolios.com *.ww99.creative-portfolios.com *.www.creative-portfolios.com
forklift-operator-jobs-nearby-se.click *.forklift-operator-jobs-nearby-se.click
*.admin.gamerstechhub.furniture *.api.gamerstechhub.furniture *.app.gamerstechhub.furniture *.assets.gamerstechhub.furniture *.autodiscover.gamerstechhub.furniture *.com-9147-ec9a7180f2a6.gamerstechhub.furniture *.daavqapp.gamerstechhub.furniture *.demo.gamerstechhub.furniture *.dev.gamerstechhub.furniture *.email.gamerstechhub.furniture gamerstechhub.furniture *.gamerstechhub.furniture *.jxphjapi.gamerstechhub.furniture *.lbjfiwun.gamerstechhub.furniture *.mail.gamerstechhub.furniture *.new.gamerstechhub.furniture *.rfbpkemail.gamerstechhub.furniture *.test.gamerstechhub.furniture *.webmail.gamerstechhub.furniture *.www.gamerstechhub.furniture *.zupihdaavqapp.gamerstechhub.furniture
*.admin.georgiagirls.co *.app.georgiagirls.co *.assets.georgiagirls.co *.chbzbassets.georgiagirls.co *.demo.georgiagirls.co *.dev.georgiagirls.co georgiagirls.co *.georgiagirls.co *.nvqmeapp.georgiagirls.co *.test.georgiagirls.co
*.api.julianusafricanus.com *.app.julianusafricanus.com *.asa.julianusafricanus.com *.dev.julianusafricanus.com julianusafricanus.com *.julianusafricanus.com *.m.julianusafricanus.com *.mail.julianusafricanus.com *.pftompxc4c3.julianusafricanus.com *.pxc4c3.julianusafricanus.com *.zrnrwtest.julianusafricanus.com
*.admin.lekol.app *.app.lekol.app *.assets.lekol.app *.demo.lekol.app *.dev.lekol.app lekol.app *.lekol.app *.news.lekol.app *.press.lekol.app *.test.lekol.app
*.burmo.rso.me *.por.rso.me rso.me *.rso.me