76/100 SECURITY SCORE

Certificate Information

Subject
CN=x1btc.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 26, 2026
Valid Until
June 24, 2026 48 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
93:D7:15:04:B2:14:44:77:4A:14:10:29:EA:EC:2F:A8:CE:74:4F:86:B4:BF:DC:38:F2:DF:EE:91:43:AA:FC:4D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
nebraskablu.com *.nebraskablu.com *.dev.nebraskablu.com *.hostmaster.nebraskablu.com *.jenkins.nebraskablu.com *.medicalpolicy.nebraskablu.com *.medicare.nebraskablu.com *.pipeline.nebraskablu.com *.production.nebraskablu.com

Other domains in certificate

*.coaching.copymaschine.com copymaschine.com *.copymaschine.com
counselors.co.za *.counselors.co.za
crib.co.za *.crib.co.za *.random.crib.co.za
dowlond.de *.dowlond.de
eidechsenarten.de *.eidechsenarten.de
*.blog.emilieinc.net emilieinc.net *.emilieinc.net *.mails.emilieinc.net
farmersconcreteconstruction.com *.farmersconcreteconstruction.com *.random.farmersconcreteconstruction.com
fischaquarium.de *.fischaquarium.de
gardinenmuster.de *.gardinenmuster.de
geogepra.org *.geogepra.org
globalvape.com.au *.globalvape.com.au *.wholesale.globalvape.com.au *.ww17.globalvape.com.au *.ww38.globalvape.com.au
hanoverairport.de *.hanoverairport.de
heckenbepflanzung.de *.heckenbepflanzung.de
hqo.de *.hqo.de
intrchalet.de *.intrchalet.de
krediktarten.de *.krediktarten.de
la123movies.live *.la123movies.live
lagerplaetze.de *.lagerplaetze.de
markert-diaet.de *.markert-diaet.de
penicillin.de *.penicillin.de
rentenversicherung-frankfurt.de *.rentenversicherung-frankfurt.de
retirementcalculator.de *.retirementcalculator.de
simplybeauty.com.au *.simplybeauty.com.au *.ww38.simplybeauty.com.au *.www.simplybeauty.com.au
*.random.techtonicgames.com techtonicgames.com *.techtonicgames.com
*.random.tests9ieger.de tests9ieger.de *.tests9ieger.de
uncomtrade.com *.uncomtrade.com *.ww2.uncomtrade.com
www-gesundheitsinformation.de *.www-gesundheitsinformation.de
wwwreisebuero.de *.wwwreisebuero.de
*.shop.x1btc.com *.vd.x1btc.com x1btc.com *.x1btc.com
xn--makuladem-57a.de *.xn--makuladem-57a.de
xn--obststrucher-mcb.de *.xn--obststrucher-mcb.de
xn--trennungssprche-bwb.de *.xn--trennungssprche-bwb.de
xn--trnken-cua.de *.xn--trnken-cua.de