Cached · 48m ago
76/100 SECURITY SCORE

Certificate Information

Subject
CN=pastorgrace.us
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 30, 2026
Valid Until
June 28, 2026 36 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:DD:35:17:34:51:00:A6:F3:3D:98:89:DB:95:D6:85:EC:71:58:AD:E8:A4:6F:F4:40:44:63:F2:53:4F:EB:4E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
gnes.com *.gnes.com *.mail.gnes.com *.talents-accompa.gnes.com *.ww25.gnes.com *.ww38.gnes.com

Other domains in certificate

adstikung.online *.adstikung.online
*.abd.ajduesbc.cc ajduesbc.cc *.ajduesbc.cc *.sitemap.ajduesbc.cc *.sitemaps.ajduesbc.cc *.test.ajduesbc.cc
artifara.com *.artifara.com *.webmail.artifara.com *.ww38.artifara.com
*.analytic.besttruckinbbq.com besttruckinbbq.com *.besttruckinbbq.com *.portfolio.besttruckinbbq.com *.thecravebar.besttruckinbbq.com *.toastycheese.besttruckinbbq.com *.ww16.besttruckinbbq.com *.ww38.besttruckinbbq.com
*.bbs.comportamentos.com *.billing.comportamentos.com comportamentos.com *.comportamentos.com *.cpanel.comportamentos.com *.e.comportamentos.com *.files.comportamentos.com *.helpdesk.comportamentos.com *.mx.comportamentos.com *.web.comportamentos.com *.xxx.comportamentos.com *.zmc.comportamentos.com
convoytruck.com *.convoytruck.com
*.0541665f-4799-4fbf-aa46-3ff2b7157b09.fatimazes.com *.074ff1b1-0602-498f-bd64-0d2d12e611cd.fatimazes.com *.09ba056d-08a3-497a-9643-b448eee3aba7.fatimazes.com *.435ede28-4b67-49c6-99bf-37a559ec6d1b.fatimazes.com *.85e37da5-2a6c-46c2-8122-0acb3f800242.fatimazes.com *.assets.fatimazes.com *.blog.fatimazes.com *.dev.fatimazes.com fatimazes.com *.fatimazes.com *.hostmaster.fatimazes.com *.summary.fatimazes.com *.vpn.fatimazes.com *.www.fatimazes.com
*.api.lanzhou.it *.backend.lanzhou.it *.demo.lanzhou.it *.hostmaster.lanzhou.it lanzhou.it *.lanzhou.it
*.ci.merreell.com *.development.merreell.com merreell.com *.merreell.com *.poc.merreell.com *.preprod.merreell.com *.ww25.merreell.com
*.cpcontacts.pastorgrace.us pastorgrace.us *.pastorgrace.us *.webdisk.pastorgrace.us *.webmail.pastorgrace.us
stavki-na-cybersport.club *.stavki-na-cybersport.club *.ww25.stavki-na-cybersport.club
*.eu3rm.tgrtstrategy.xyz tgrtstrategy.xyz *.tgrtstrategy.xyz *.zruod.tgrtstrategy.xyz
thebestjob.it *.thebestjob.it
toclub.it *.toclub.it
tripsuissealpine.com *.tripsuissealpine.com *.www.tripsuissealpine.com
vinagreta.it *.vinagreta.it
vivamilano.it *.vivamilano.it