76/100 SECURITY SCORE

Certificate Information

Subject
CN=appszone.vip
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 08, 2026
Valid Until
April 08, 2026 55 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
42:27:DC:69:24:8E:B4:E9:1B:DA:93:08:BF:6B:27:8E:60:0E:CE:2C:C4:B9:0B:EA:34:9F:21:C8:CE:12:8E:4C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
salisburync.com *.salisburync.com *.gate.salisburync.com *.ww10.salisburync.com

Other domains in certificate

183sarawak.com *.183sarawak.com
appszone.vip *.appszone.vip
artandjakes.com *.artandjakes.com
bamoun.com *.bamoun.com
bentyl.com *.bentyl.com
bestpuppies.com *.bestpuppies.com *.ww38.bestpuppies.com
calliejackshop.com *.calliejackshop.com *.pay.calliejackshop.com
customerneeds.com *.customerneeds.com
discohit.com *.discohit.com
erhoehte-leberwerte.de *.erhoehte-leberwerte.de
*.dns.erieinsirance.com erieinsirance.com *.erieinsirance.com *.mx7.erieinsirance.com *.random.erieinsirance.com
hone-158.com *.hone-158.com
huntingvictoria.com.au *.huntingvictoria.com.au *.random.huntingvictoria.com.au *.webmail.huntingvictoria.com.au *.ww16.huntingvictoria.com.au *.www.huntingvictoria.com.au
iroboot.com *.iroboot.com
jhonnyromero.co *.jhonnyromero.co
kawabayashiteam24.xyz *.kawabayashiteam24.xyz
*.alpha.knowledgeworker.blog *.api.knowledgeworker.blog knowledgeworker.blog *.knowledgeworker.blog *.random.knowledgeworker.blog *.ww25.knowledgeworker.blog *.www.knowledgeworker.blog
matromonio.com *.matromonio.com
mp3skull.app *.mp3skull.app
*.mail.newsykeeda.com newsykeeda.com *.newsykeeda.com *.usa.newsykeeda.com *.www.newsykeeda.com
nyz.co *.nyz.co
options1.com *.options1.com
persianconnections.com *.persianconnections.com
quadsgoddess.click *.quadsgoddess.click
receber-sms.cc *.receber-sms.cc *.ww16.receber-sms.cc *.ww38.receber-sms.cc
shecterguitars.com *.shecterguitars.com
skybouncer.com *.skybouncer.com
*.app.soclaiegj.xyz *.d.soclaiegj.xyz soclaiegj.xyz *.soclaiegj.xyz *.wildcard.soclaiegj.xyz *.ww25.soclaiegj.xyz *.www.soclaiegj.xyz
southbroward.com *.southbroward.com
towerhomes.com *.towerhomes.com
vegamovies3.top *.vegamovies3.top