76/100 SECURITY SCORE

Certificate Information

Subject
CN=flix21.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:35:1B:9B:54:1E:30:C3:9C:A4:A2:3F:41:1E:75:7F:B0:E1:11:71:5A:E0:E2:BA:8B:4F:39:AA:DE:DB:01:D4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
fapsincinteractive.com *.fapsincinteractive.com

Other domains in certificate

additional.life *.additional.life *.ww25.additional.life
*.admin.alulus.com alulus.com *.alulus.com *.ftp.alulus.com *.git.alulus.com *.lulu.alulus.com *.m.alulus.com *.mail.alulus.com *.mailin.alulus.com *.mx.alulus.com *.mx02.alulus.com *.mx1.alulus.com *.mx20.alulus.com *.mx3.alulus.com *.mx4.alulus.com *.newmail.alulus.com *.relay2.alulus.com *.server1.alulus.com *.server2.alulus.com *.sitemaps.alulus.com *.smtp1.alulus.com *.smtpseguro.alulus.com *.uat.alulus.com *.vmail.alulus.com *.vpn.alulus.com *.webmail.alulus.com *.ww.alulus.com *.ww1.alulus.com *.ww12.alulus.com *.ww7.alulus.com *.ww99.alulus.com *.www.alulus.com
canlimaclar9130.sbs *.canlimaclar9130.sbs
*.doc.dragonprotocol.io dragonprotocol.io *.dragonprotocol.io *.gitbook.dragonprotocol.io *.layer.dragonprotocol.io
eloquentwellness.com *.eloquentwellness.com
exwellness.com *.exwellness.com
fashionbet540.com *.fashionbet540.com
flix21.xyz *.flix21.xyz *.net.flix21.xyz *.pemutar.flix21.xyz *.series.flix21.xyz *.watch.flix21.xyz *.ww25.flix21.xyz *.ww38.flix21.xyz
glamandbrime.com *.glamandbrime.com
*.com.hellenscollections.com hellenscollections.com *.hellenscollections.com *.hms.hellenscollections.com *.org.hellenscollections.com *.surveystask.hellenscollections.com *.writershub.hellenscollections.com
hongyun128m.cc *.hongyun128m.cc
lionceau.org *.lionceau.org
lkmjx.gdn *.lkmjx.gdn
msblq.com *.msblq.com
*.api.musicfy.club *.app.musicfy.club musicfy.club *.musicfy.club
pairs.info *.pairs.info
present.finance *.present.finance
*.mail.sorrows.it sorrows.it *.sorrows.it
tayya.org *.tayya.org *.test.tayya.org