76/100 SECURITY SCORE

Certificate Information

Subject
CN=foxbit.cc
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 21, 2026
Valid Until
June 19, 2026 31 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:46:C9:DD:65:FA:F9:3E:2D:9A:34:B5:8D:89:81:62:57:DE:D9:85:C3:23:4B:E4:2D:B5:73:C2:DE:87:26:2F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
fxseminar.com *.fxseminar.com *.152dd115-bda5-4460-a00f-8464110a1318.fxseminar.com *.a9f3001a-b007-4474-889a-032fbf0f9e6e.fxseminar.com *.api.fxseminar.com *.b6dddea5-43ae-4ebc-9455-7665aa825ac6.fxseminar.com *.blog.fxseminar.com *.cloud.fxseminar.com *.cpanel.fxseminar.com *.crm.fxseminar.com *.ebay.fxseminar.com *.forum.fxseminar.com *.help.fxseminar.com *.m.fxseminar.com *.old.fxseminar.com *.poczta.fxseminar.com *.pop.fxseminar.com *.rds.fxseminar.com *.shop.fxseminar.com

Other domains in certificate

320tymp3.com *.320tymp3.com
baufinanzerung.de *.baufinanzerung.de
cabler.com.au *.cabler.com.au *.ww38.cabler.com.au
careerhelp.info *.careerhelp.info *.devb.careerhelp.info
daisukijapao.com.br *.daisukijapao.com.br
*.blog.excellent-top.com *.comblog.excellent-top.com excellent-top.com *.excellent-top.com *.nexus.excellent-top.com *.tgp.excellent-top.com *.vod.excellent-top.com
*.d.foxbit.cc foxbit.cc *.foxbit.cc *.ww25.foxbit.cc
gooogdk.xyz *.gooogdk.xyz *.h.gooogdk.xyz *.h0316.gooogdk.xyz
holdiayinn.co.uk *.holdiayinn.co.uk
japanische-frauen.de *.japanische-frauen.de
kugelgewehre.de *.kugelgewehre.de
lockeneisen.de *.lockeneisen.de
*.en.luxuryhop.com luxuryhop.com *.luxuryhop.com *.ns.luxuryhop.com *.random.luxuryhop.com *.svn.luxuryhop.com
*.bf5732fa-1970-4438-953f-129c2a1ba4cc.monobahis493.com monobahis493.com *.monobahis493.com
octanereport.com *.octanereport.com *.ww1.octanereport.com
plummer-vinson-syndrom.de *.plummer-vinson-syndrom.de
serumkrankheit.de *.serumkrankheit.de
smartstaff.com.au *.smartstaff.com.au
sulcus-centralis.de *.sulcus-centralis.de
*.random.super-house-chinese.com super-house-chinese.com *.super-house-chinese.com
*.dfvomnjcbymyjsaww.vnhax.net vnhax.net *.vnhax.net *.ww25.vnhax.net
*.accounts.voicetotext.io *.clerk.voicetotext.io *.mail.voicetotext.io voicetotext.io *.voicetotext.io
wohnmobilaufkleber.de *.wohnmobilaufkleber.de
xn--wwwexistenzgrnder-f3b.de *.xn--wwwexistenzgrnder-f3b.de