76/100 SECURITY SCORE

Certificate Information

Subject
CN=draftedge.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 14, 2026
Valid Until
August 12, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:C6:B7:4E:C8:DB:AA:36:AB:B8:E1:48:1B:A7:43:08:D9:65:C4:90:4B:DD:07:73:89:2B:0E:9B:DA:C4:32:48
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
poorgenetics.com *.poorgenetics.com *.hostmaster.poorgenetics.com *.vpn.poorgenetics.com

Other domains in certificate

*.090billsupdates-xfntyacct.1thani.mobi 1thani.mobi *.1thani.mobi
458269.my *.458269.my *.5e09ad41-4612-4fe6-9751-5974fdf9a1d1.458269.my *.9cf24da2-f6ad-4dbb-ae05-c315b4447902.458269.my *.assets.458269.my *.cdn.458269.my *.dev.458269.my *.m.458269.my *.static.458269.my
7heavens.club *.7heavens.club *.ashleytisdale.7heavens.club
chymical.net *.chymical.net *.ftp.chymical.net *.mail.chymical.net *.mail2.chymical.net *.smtp.chymical.net *.www.chymical.net
couponpenguin.com *.couponpenguin.com *.intranet.couponpenguin.com
directtoyoutireservice.com *.directtoyoutireservice.com *.email.directtoyoutireservice.com *.nav.directtoyoutireservice.com *.wallet.directtoyoutireservice.com *.ww1.directtoyoutireservice.com *.ww99.directtoyoutireservice.com
*.dev.draftedge.top draftedge.top *.draftedge.top
*.a.elitelivupingsel.com elitelivupingsel.com *.elitelivupingsel.com
elitemediator.com *.elitemediator.com *.m.elitemediator.com
*.1c8739c6-1f7d-418d-ac77-388c755e8dd1.ellese.cl *.8cfc63a0-882f-4b81-889d-e1e792d53444.ellese.cl *.c9657c01-073b-4b6c-80a7-2dfc764f3319.ellese.cl *.ccb067ab-70f8-45e4-9cac-6e03e612ca33.ellese.cl *.co.ellese.cl *.d45498e9-ab38-4e70-b1a0-599f8412bf09.ellese.cl *.e.ellese.cl ellese.cl *.ellese.cl *.ewe.ellese.cl *.ww.ellese.cl *.wwe.ellese.cl *.www.ellese.cl *.wwww.ellese.cl
*.demo.eventmaps.net eventmaps.net *.eventmaps.net *.m.eventmaps.net
historichandshake.com *.historichandshake.com *.m.historichandshake.com
idroid.it *.idroid.it *.ww.idroid.it *.www.idroid.it
*.a.mcw19bd.info mcw19bd.info *.mcw19bd.info
prlocal.com *.prlocal.com *.ww17.prlocal.com
*.remote.rik19.net rik19.net *.rik19.net *.www.rik19.net
*.autodiscover.simpli.media *.beta.simpli.media simpli.media *.simpli.media *.sip.simpli.media
*.a.ufacasino888.info *.app.ufacasino888.info ufacasino888.info *.ufacasino888.info