76/100 SECURITY SCORE

Certificate Information

Subject
CN=play-gale-fury.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026 81 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:1C:61:ED:0E:A3:76:42:DD:B1:7E:A5:DC:4E:C1:C7:61:98:26:66:A2:28:03:78:3A:D6:5B:96:90:19:41:0A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
speaknovi.com *.speaknovi.com

Other domains in certificate

play-gale-fury.xyz *.play-gale-fury.xyz
plumbing-and-heating-contractor.xyz *.plumbing-and-heating-contractor.xyz
pngtree.co *.pngtree.co
powerdreams.info *.powerdreams.info
prudta.vip *.prudta.vip
puregardeningjoy.live *.puregardeningjoy.live
qcqcute.xyz *.qcqcute.xyz
qecy2o8h.top *.qecy2o8h.top
quoteme.it *.quoteme.it
qycxe.xyz *.qycxe.xyz
qysron.xyz *.qysron.xyz
qzmckw.irish *.qzmckw.irish
raleighonlinenews.com *.raleighonlinenews.com
rasseraroniiolealionspot.shop *.rasseraroniiolealionspot.shop
re22.com *.re22.com
rebeloper-team.com *.rebeloper-team.com
ririduatang.xyz *.ririduatang.xyz
robgifford.com *.robgifford.com
root4android.com *.root4android.com
rtp46-hobi188.xyz *.rtp46-hobi188.xyz
rucvixkt.xyz *.rucvixkt.xyz
rumaragarniniosdalstz.cyou *.rumaragarniniosdalstz.cyou
rv8sk07.cyou *.rv8sk07.cyou
sanyuexiaozai.com *.sanyuexiaozai.com
saurornithic.com *.saurornithic.com
secfitzz.click *.secfitzz.click
shellharbor.com *.shellharbor.com
singawinbest.us *.singawinbest.us
sjhgf.bid *.sjhgf.bid
snfang3.buzz *.snfang3.buzz
solevelupaccess.shop *.solevelupaccess.shop
spatialtyping.com *.spatialtyping.com
sportsicononline.com *.sportsicononline.com
sportzonetoday.cyou *.sportzonetoday.cyou
spurl.com *.spurl.com
stanjames.cc *.stanjames.cc
stjohnriver.com *.stjohnriver.com
studentvacancies.com *.studentvacancies.com
styleandimage.it *.styleandimage.it
sudekii.xyz *.sudekii.xyz
surrogacy-agency-408297805.click *.surrogacy-agency-408297805.click
sustainablegrid.online *.sustainablegrid.online
sxbee.bid *.sxbee.bid
syrianowonline.com *.syrianowonline.com