79/100 SECURITY SCORE

Certificate Information

Subject
CN=26028.one
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:87:B2:33:89:6A:29:B3:79:33:12:AC:F1:52:E5:7A:00:CE:E6:41:47:0C:F7:3F:4F:F3:37:EA:C3:24:B2:F2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
futureclimatechange.com *.futureclimatechange.com

Other domains in certificate

26028.one *.26028.one
39096.locker *.39096.locker
493930.cc *.493930.cc
77305.vip *.77305.vip
822637.loan *.822637.loan
96602.vip *.96602.vip
angelicorps.com *.angelicorps.com
artisticvacationtours.live *.artisticvacationtours.live
asdtruaroniiopealo.shop *.asdtruaroniiopealo.shop
cortruaroniiosdalet.cyou *.cortruaroniiosdalet.cyou
creo.bet *.creo.bet
dapthw.com *.dapthw.com
deskvewweb6dwae.top *.deskvewweb6dwae.top
dmjwy.pro *.dmjwy.pro
exryon.com *.exryon.com
fgf777.info *.fgf777.info
fimtruarniniosdalope.cyou *.fimtruarniniosdalope.cyou
fitnessadvancehub.run *.fitnessadvancehub.run
fitnessvibetrend.run *.fitnessvibetrend.run
fjmnk.pro *.fjmnk.pro
fla-oli.com *.fla-oli.com
foodloverssphere.food *.foodloverssphere.food
footmarksintravel.live *.footmarksintravel.live
freshnewsportal.cfd *.freshnewsportal.cfd
gardeningnuturingnature.xyz *.gardeningnuturingnature.xyz
gossipwaveworld.xyz *.gossipwaveworld.xyz
handmadediyprojects.xyz *.handmadediyprojects.xyz
italianautomotives.com *.italianautomotives.com
kittymc.com *.kittymc.com
lontruaronioasdalmartz.shop *.lontruaronioasdalmartz.shop
mailwent.com *.mailwent.com
modernapparelcorner.cfd *.modernapparelcorner.cfd
steel-home.com *.steel-home.com
suphan.com *.suphan.com *.wut.suphan.com
truthcdm.com *.truthcdm.com
unforgettabletravelpaths.live *.unforgettabletravelpaths.live
uniquefoodsavors.food *.uniquefoodsavors.food
uqjyk.pro *.uqjyk.pro
v5n78y5.cyou *.v5n78y5.cyou
verona.best *.verona.best
vom.ar *.vom.ar
vzsjstmdhc.biz *.vzsjstmdhc.biz
web3sparrow.xyz *.web3sparrow.xyz