Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=finixcoin.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 07, 2026
Valid Until
May 08, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:E7:94:67:16:CE:28:9E:84:B3:98:16:6A:78:8F:0B:57:AA:96:8E:0A:C4:06:6B:09:B4:DD:97:44:2A:6A:30
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ropolo.com *.ropolo.com *.bersin.ropolo.com *.dev.ropolo.com *.sitemaps.ropolo.com *.test.ropolo.com *.ww1.ropolo.com *.ww16.ropolo.com *.zhihat.ropolo.com

Other domains in certificate

aidsklinik.de *.aidsklinik.de
*.2fww25.antiragging.com antiragging.com *.antiragging.com *.ww38.antiragging.com *.www.antiragging.com
apertadinha.com *.apertadinha.com *.www.apertadinha.com
*.auth.bandarbola855.bio bandarbola855.bio *.bandarbola855.bio *.preprod.bandarbola855.bio *.reset.bandarbola855.bio
bilnurozkan.com *.bilnurozkan.com *.cpanel.bilnurozkan.com
*.access.csit.com *.autodiscover.csit.com *.comune.csit.com csit.com *.csit.com *.edu.csit.com *.mail.csit.com *.perez-woman.csit.com *.portal.csit.com *.rds.csit.com *.rtttyg.csit.com *.u.csit.com *.vpn.csit.com *.wlac.csit.com *.www.csit.com *.z.csit.com
finixcoin.org *.finixcoin.org *.home.finixcoin.org *.ns1.finixcoin.org *.www.finixcoin.org
gyyanc.co *.gyyanc.co *.ww25.gyyanc.co
*.citrix.hermespardini.com *.gpo.hermespardini.com hermespardini.com *.hermespardini.com *.portalpacs.hermespardini.com *.sp.hermespardini.com *.ww11.hermespardini.com
*.analytics.hotelmafalda.com hotelmafalda.com *.hotelmafalda.com
icbie.vip *.icbie.vip *.vip.icbie.vip
iconn-fashion.online *.iconn-fashion.online
interactsports.com *.interactsports.com *.www.interactsports.com
legalinsurance.com.au *.legalinsurance.com.au
mpotawon.xyz *.mpotawon.xyz *.ww25.mpotawon.xyz *.ww38.mpotawon.xyz *.www.mpotawon.xyz
onlinewfh.life *.onlinewfh.life
sirreesredbuck.space *.sirreesredbuck.space
*.mail.underdog.com.au underdog.com.au *.underdog.com.au
*.airflow.urquiaga.com *.dev.urquiaga.com *.mail.urquiaga.com *.test.urquiaga.com urquiaga.com *.urquiaga.com *.ww16.urquiaga.com