76/100 SECURITY SCORE

Certificate Information

Subject
CN=teddybearpoms.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 14, 2026
Valid Until
August 12, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D8:D3:68:94:94:D9:C0:D3:3D:57:37:A1:47:FD:71:DD:58:E7:CA:06:30:8C:13:C5:25:5B:06:B7:3B:04:02:C3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
globalwinesearcher.com *.globalwinesearcher.com

Other domains in certificate

452014.one *.452014.one
4hhpaz.cyou *.4hhpaz.cyou
4kwb31.cyou *.4kwb31.cyou
4w6d3v.cyou *.4w6d3v.cyou
55g3zk.cyou *.55g3zk.cyou
5brwm7.cyou *.5brwm7.cyou
baythotart.ru *.baythotart.ru
bluetooth-speakers-accessories-159.sbs *.bluetooth-speakers-accessories-159.sbs
bnzzxgh.top *.bnzzxgh.top
borrow-no-credit-check-bg-3492.sbs *.borrow-no-credit-check-bg-3492.sbs
brickgore.com *.brickgore.com
c9miq10w.cc *.c9miq10w.cc
campaignmint.com *.campaignmint.com
countyofrnerced.com *.countyofrnerced.com
deepcheckup.com *.deepcheckup.com
deluxedestinations.biz *.deluxedestinations.biz
dental-marketing-7o.click *.dental-marketing-7o.click
duplicate.ad *.duplicate.ad
ehxscrg512.vip *.ehxscrg512.vip
elizawood.com *.elizawood.com
ffqrbrs176.vip *.ffqrbrs176.vip
huiyao368v.cc *.huiyao368v.cc
itaplinconcert.it.com *.itaplinconcert.it.com
lezitu.pro *.lezitu.pro
lwyxe.cn *.lwyxe.cn
mypm.rip *.mypm.rip
neckive.com *.neckive.com
nemopflege.de *.nemopflege.de
osnplus.to *.osnplus.to
pet-remembrance-services-234hj.click *.pet-remembrance-services-234hj.click
strucant.com *.strucant.com
synapse-web.org *.synapse-web.org
teddybearpoms.org *.teddybearpoms.org
therblythe.co *.therblythe.co
unerupted.com *.unerupted.com
unexterritoriality.com *.unexterritoriality.com
unfeigningness.com *.unfeigningness.com
vbfnctf224.vip *.vbfnctf224.vip
vrwugtt1376.vip *.vrwugtt1376.vip
white-label-409460058.click *.white-label-409460058.click
worlldpress.com *.worlldpress.com
www23479.top *.www23479.top
www26470.vip *.www26470.vip
z77t.cyou *.z77t.cyou