76/100 SECURITY SCORE

Certificate Information

Subject
CN=6ep.buzz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 12, 2026
Valid Until
August 10, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BF:B7:FD:11:C2:25:6F:6F:0D:78:55:45:40:2E:D2:5B:D9:70:F4:89:7C:0E:A2:27:D1:74:5F:61:2D:BA:60:4E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
confirmationorder.com *.confirmationorder.com *.32.confirmationorder.com *.fiverr-to.confirmationorder.com *.ww38.confirmationorder.com

Other domains in certificate

6ep.buzz *.6ep.buzz *.www.6ep.buzz
aureatehalo.art *.aureatehalo.art *.m.aureatehalo.art *.uqiibtest.aureatehalo.art
cuanbanget333menang.tech *.cuanbanget333menang.tech
*.6a4esk.eightlosangeles.com eightlosangeles.com *.eightlosangeles.com *.www.eightlosangeles.com
*.admin.gacor899.art gacor899.art *.gacor899.art *.vpn.gacor899.art
hornaid.org *.hornaid.org *.jafar.hornaid.org
*.dev.idrink.org *.hostmaster.idrink.org idrink.org *.idrink.org *.m.idrink.org *.sitemap.idrink.org *.sitemaps.idrink.org
knob.studio *.knob.studio
metavibe.me *.metavibe.me
*.comunedisi.nagra.it *.dentistasi.nagra.it *.hostmaster.nagra.it *.ksnet.nagra.it nagra.it *.nagra.it *.remote.nagra.it
*.cal.newave.com *.enterprise.newave.com *.fluctus.newave.com newave.com *.newave.com *.one.newave.com *.os.newave.com *.van.newave.com
nottinghamshirepayslips.co.uk *.nottinghamshirepayslips.co.uk *.ww25.nottinghamshirepayslips.co.uk
obce.org *.obce.org *.ww25.obce.org
*.hostmaster.pferdespielespielen.de pferdespielespielen.de *.pferdespielespielen.de
*.office2.tacolunch.blog *.portal1.tacolunch.blog *.rd1.tacolunch.blog tacolunch.blog *.tacolunch.blog *.web1.tacolunch.blog
tacticodyssey172.shop *.tacticodyssey172.shop *.www.tacticodyssey172.shop
totalfilmes.online *.totalfilmes.online *.ww25.totalfilmes.online *.ww38.totalfilmes.online
turbodino.com *.turbodino.com *.www.turbodino.com
*.api.vavadapd10.com *.ftp.vavadapd10.com *.m.vavadapd10.com *.mail.vavadapd10.com *.pop3.vavadapd10.com *.smtp.vavadapd10.com vavadapd10.com *.vavadapd10.com *.vpn.vavadapd10.com *.www1.vavadapd10.com
wondefulapplend.com *.wondefulapplend.com *.ww16.wondefulapplend.com