Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=a1business.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 22, 2026
Valid Until
May 23, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
97:E9:9D:66:51:EF:47:E0:8E:52:12:6F:86:41:A0:EF:CC:16:6B:13:26:6E:AE:3B:C8:B6:B6:FB:37:1E:C1:2F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
fyay.com *.fyay.com

Other domains in certificate

a1business.co.uk *.a1business.co.uk *.hostmaster.a1business.co.uk *.mail.a1business.co.uk *.www.a1business.co.uk
binomio.com *.binomio.com *.ebay.binomio.com *.hostmaster.binomio.com *.ssl.binomio.com *.sslvpn.binomio.com
*.8be82d3c-31ed-4c7a-ad4a-15b05ee5d64a.kinkliving.com *.admin.kinkliving.com *.api.kinkliving.com *.app.kinkliving.com *.assets.kinkliving.com *.autodiscover.kinkliving.com *.auytum.kinkliving.com *.ftp.kinkliving.com kinkliving.com *.kinkliving.com *.vpn.kinkliving.com *.www.kinkliving.com
*.api.leboute.be *.app.leboute.be *.beta.leboute.be *.demo.leboute.be *.dev.leboute.be *.forums.leboute.be leboute.be *.leboute.be *.mail.leboute.be *.new.leboute.be *.remote.leboute.be *.shop.leboute.be *.staging.leboute.be *.support.leboute.be *.test.leboute.be *.vpn.leboute.be *.wap.leboute.be *.web.leboute.be *.wiki.leboute.be *.ww38.leboute.be *.www.leboute.be
*.link.nooraldonia.net *.mail.nooraldonia.net nooraldonia.net *.nooraldonia.net *.sitemap.nooraldonia.net *.www.nooraldonia.net
*.random.rssmore.com rssmore.com *.rssmore.com
*.0zcus.tupatrams.xyz *.17zlt.tupatrams.xyz *.2kl4e.tupatrams.xyz *.3e0qk.tupatrams.xyz *.4c04n.tupatrams.xyz *.ci.tupatrams.xyz *.cyptn.tupatrams.xyz *.dns.tupatrams.xyz *.dzjbe.tupatrams.xyz *.ejqhc.tupatrams.xyz *.fzrvr.tupatrams.xyz *.insight.tupatrams.xyz *.jbduh.tupatrams.xyz *.jzjfe.tupatrams.xyz *.lesxy.tupatrams.xyz *.prod.tupatrams.xyz *.rpqek.tupatrams.xyz *.rxxkq.tupatrams.xyz *.superset.tupatrams.xyz tupatrams.xyz *.tupatrams.xyz *.unesl.tupatrams.xyz *.ww25.tupatrams.xyz *.xp63v.tupatrams.xyz
*.9c1.usmrbf.org *.copy1.usmrbf.org *.hostmaster.usmrbf.org *.jykj7.usmrbf.org *.longji.usmrbf.org *.plxx.usmrbf.org *.qw.usmrbf.org *.r031.usmrbf.org *.rtz.usmrbf.org usmrbf.org *.usmrbf.org