76/100 SECURITY SCORE

Certificate Information

Subject
CN=nearestpaydayloan.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
40:6F:17:10:E6:8B:FE:AD:90:2C:7C:9B:D1:B6:E9:11:F5:37:3A:6B:91:2D:B6:92:7D:41:68:5C:34:4F:75:F8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
mastercareshop.nl *.mastercareshop.nl *.admin.mastercareshop.nl *.api.mastercareshop.nl *.assets.mastercareshop.nl *.blog.mastercareshop.nl *.cloud.mastercareshop.nl *.dev.mastercareshop.nl *.e18d4d6e-a67a-42b8-a6fa-4568882a0ff4.mastercareshop.nl *.mail.mastercareshop.nl *.random.mastercareshop.nl *.rds.mastercareshop.nl *.rdweb.mastercareshop.nl *.remote.mastercareshop.nl *.staging.mastercareshop.nl *.store.mastercareshop.nl *.support.mastercareshop.nl *.ts.mastercareshop.nl *.www.mastercareshop.nl

Other domains in certificate

930424.com *.930424.com *.www.930424.com
*.7cc7c3ed-1c8a-4c72-b11c-81cf89bed8bc.journalsphere.com *.api.journalsphere.com *.autodiscover.journalsphere.com *.casoni.journalsphere.com *.cpcalendars.journalsphere.com *.cpcontacts.journalsphere.com *.dev.journalsphere.com *.f2dda36b-bee3-4165-9797-acc8773dce45.journalsphere.com journalsphere.com *.journalsphere.com *.kcbon.journalsphere.com *.localhost.journalsphere.com *.login.journalsphere.com *.new.journalsphere.com *.old.journalsphere.com *.qasmgreport.journalsphere.com *.report.journalsphere.com *.s3f10d.journalsphere.com *.social.journalsphere.com *.webdisk.journalsphere.com *.webmail.journalsphere.com *.whm.journalsphere.com *.www.journalsphere.com
*.hostmaster.matterhorn.vc *.m.matterhorn.vc matterhorn.vc *.matterhorn.vc
*.cpanel.nearestpaydayloan.com *.mail.nearestpaydayloan.com nearestpaydayloan.com *.nearestpaydayloan.com
*.hostmaster.nothungry.org *.m.nothungry.org nothungry.org *.nothungry.org *.sitemap.nothungry.org *.sitemaps.nothungry.org *.www.nothungry.org
*.1.overhei.nl *.admin.overhei.nl *.bi.overhei.nl *.crm.overhei.nl *.dash.overhei.nl *.dashs.overhei.nl *.forecast.overhei.nl *.lime.overhei.nl *.login.overhei.nl *.lokaleregelgeving.overhei.nl *.m.overhei.nl *.mij.overhei.nl *.mijn.overhei.nl *.omgevingswet.overhei.nl overhei.nl *.overhei.nl *.redash.overhei.nl *.regelgeving.overhei.nl *.reporting.overhei.nl *.rijksportaal.overhei.nl *.superset.overhei.nl *.wette.overhei.nl *.wetten.overhei.nl *.ww1.overhei.nl *.ww103.overhei.nl *.ww12.overhei.nl
*.cpcontacts.paraglidingpokhara.com *.mail.paraglidingpokhara.com paraglidingpokhara.com *.paraglidingpokhara.com