Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=win52.club
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 12, 2026
Valid Until
August 10, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:35:F5:5B:CB:7E:48:BA:0C:32:FA:EA:A4:05:23:90:92:34:5F:59:47:E5:75:4B:0B:77:24:13:21:6A:76:10
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ffiny.com *.ffiny.com *.cheapmedicinepills.ffiny.com *.ffinypay.ffiny.com *.getdailypics.ffiny.com *.surajfashion.ffiny.com *.vijaymangukiya.ffiny.com

Other domains in certificate

2031.pl *.2031.pl *.account.2031.pl *.ad9bc195-eb2c-4b21-8293-bbe2059a2d5d.2031.pl *.adm.2031.pl *.admin.2031.pl *.app.2031.pl *.autoconfig.2031.pl *.bbe2059a2d5d.2031.pl *.client.2031.pl *.connectvpn.2031.pl *.cs.2031.pl *.gateway.2031.pl *.login.2031.pl *.m.2031.pl *.mobile.2031.pl *.ms1.2031.pl *.office.2031.pl *.portal.2031.pl *.remoteaccess.2031.pl *.rs.2031.pl *.secure.2031.pl *.smtp2.2031.pl *.ssl.2031.pl *.vip.2031.pl *.vpn1.2031.pl *.vpn2.2031.pl *.webconnect.2031.pl *.webmail.2031.pl *.webvpn.2031.pl *.ww25.2031.pl *.ww38.2031.pl
aftvc.net *.aftvc.net *.bbs.aftvc.net *.qok.aftvc.net
*.32.andri.pro andri.pro *.andri.pro
*.admin.chinas.bet chinas.bet *.chinas.bet *.demo.chinas.bet *.members.chinas.bet *.test.chinas.bet *.www.chinas.bet
harnessamplifyymagnet.info *.harnessamplifyymagnet.info *.kad946.harnessamplifyymagnet.info *.kmaich.harnessamplifyymagnet.info
*.activesync.homburginvest.com homburginvest.com *.homburginvest.com
*.admin.klarnuvine.cfd *.api.klarnuvine.cfd *.dev.klarnuvine.cfd klarnuvine.cfd *.klarnuvine.cfd *.staging.klarnuvine.cfd
*.m.memecoindevs.com memecoindevs.com *.memecoindevs.com *.remote.memecoindevs.com
*.api.sditcaz-zahrapu.org sditcaz-zahrapu.org *.sditcaz-zahrapu.org *.staging.sditcaz-zahrapu.org
*.ns1.taxiadvertising.com.au taxiadvertising.com.au *.taxiadvertising.com.au
*.3028155.vqsr26.xyz *.dev.vqsr26.xyz vqsr26.xyz *.vqsr26.xyz *.ww25.vqsr26.xyz *.ww38.vqsr26.xyz
*.autodiscover.water-fresh.com water-fresh.com *.water-fresh.com
*.32.win52.club *.mail.win52.club win52.club *.win52.club