Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=fxnetowrks.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 23, 2026
Valid Until
April 23, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:04:6D:E5:D6:94:2F:51:A3:66:55:B8:50:32:82:72:FD:E1:CF:AA:1C:64:12:23:9C:A1:4C:32:F1:72:3A:CE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
74 domains
epotnet.com
*.epotnet.com
*.ww25.epotnet.com
appliedbookkeeping.com.au
*.appliedbookkeeping.com.au
*.cicd.appliedbookkeeping.com.au
*.cpanel.appliedbookkeeping.com.au
*.ww16.appliedbookkeeping.com.au
arlinsonsanabria.com
*.arlinsonsanabria.com
*.ww25.arlinsonsanabria.com
bconsgroup.info
*.bconsgroup.info
*.app.digitalpartnersnetwork.co.uk
digitalpartnersnetwork.co.uk
*.digitalpartnersnetwork.co.uk
foreverpets.com.au
*.foreverpets.com.au
free-online-porn.pro
*.free-online-porn.pro
*.ww25.free-online-porn.pro
*.ww38.free-online-porn.pro
*.admin.fxnetowrks.com
fxnetowrks.com
*.fxnetowrks.com
kneipomat.de
*.kneipomat.de
lantalyamontigny-le-bretonneux.fr
*.lantalyamontigny-le-bretonneux.fr
missionsaintpaul.fr
*.missionsaintpaul.fr
moncoach-sportif-aix.fr
*.moncoach-sportif-aix.fr
myhuile.fr
*.myhuile.fr
*.hfxmeww25.onthenote.com
*.mail.onthenote.com
*.n-back-game.onthenote.com
onthenote.com
*.onthenote.com
*.www.onthenote.com
perimede.tech
*.perimede.tech
*.403881138fc1.prima-models.club
*.clubw25.prima-models.club
*.clubww25.prima-models.club
*.cpanel.prima-models.club
*.cpcalendars.prima-models.club
*.forum.prima-models.club
*.mail.prima-models.club
prima-models.club
*.prima-models.club
*.static.prima-models.club
*.webdisk.prima-models.club
*.webmail.prima-models.club
*.whm.prima-models.club
*.ww25.prima-models.club
*.wwgc.prima-models.club
rommgpt.io
*.rommgpt.io
*.ww25.rommgpt.io
saradase.com
*.saradase.com
*.random.scandichild.co.uk
scandichild.co.uk
*.scandichild.co.uk
sweetness.life
*.sweetness.life
thewoodlandstavern.co.uk
*.thewoodlandstavern.co.uk
*.webmail.thewoodlandstavern.co.uk
ueice.com
*.ueice.com
*.ww25.ueice.com
Other domains in certificate