76/100 SECURITY SCORE

Certificate Information

Subject
CN=budsilk.shopping
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 19, 2026
Valid Until
July 18, 2026 70 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BA:5E:EF:83:99:29:96:25:4A:8E:3D:FF:6C:84:33:6A:F1:E5:5D:8B:B2:22:7F:94:E3:FE:A6:CF:20:82:4F:D9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
gratisproperties.com *.gratisproperties.com *.hostmaster.gratisproperties.com *.sitemaps.gratisproperties.com *.www.gratisproperties.com

Other domains in certificate

allfactors.it *.allfactors.it *.autodiscover.allfactors.it *.cpanel.allfactors.it *.cpcalendars.allfactors.it *.cpcontacts.allfactors.it *.hostmaster.allfactors.it *.mail.allfactors.it *.smtp.allfactors.it *.webdisk.allfactors.it *.webmail.allfactors.it *.www.allfactors.it
*.admin.atlantavillas.com atlantavillas.com *.atlantavillas.com *.mx1.atlantavillas.com *.random.atlantavillas.com
*.59d0518c-b40b-4182-ba4e-498765afaa44.budsilk.shopping *.app.budsilk.shopping *.bot.budsilk.shopping budsilk.shopping *.budsilk.shopping *.dev.budsilk.shopping *.homologacao.budsilk.shopping *.mail.budsilk.shopping *.members.budsilk.shopping *.staging.budsilk.shopping *.test.budsilk.shopping
cosmoworld999.shop *.cosmoworld999.shop
*.apple.gamebrio.store *.attendance.gamebrio.store *.cataloug.gamebrio.store *.codes.gamebrio.store *.cowsystem.gamebrio.store *.cowsystemibrahim.gamebrio.store gamebrio.store *.gamebrio.store *.gamesapp.gamebrio.store *.jokade.gamebrio.store *.lacasa.gamebrio.store *.lol.gamebrio.store *.socialhub.gamebrio.store *.ticket.gamebrio.store *.vouchersystem.gamebrio.store
*.cpanel.heavymetalcnc.com *.cpcalendars.heavymetalcnc.com *.cpcontacts.heavymetalcnc.com *.d75c9c72a9c7.heavymetalcnc.com heavymetalcnc.com *.heavymetalcnc.com *.random.heavymetalcnc.com *.smtp.heavymetalcnc.com *.webmail.heavymetalcnc.com
loggainse.com *.loggainse.com *.ww38.loggainse.com
*.0db496f3-904f-47b9-ae39-ac2debc48e10.vhsoftwarex.com *.11276e02-5cf6-4310-a501-a7ddb4372278.vhsoftwarex.com *.ambari.vhsoftwarex.com *.app.vhsoftwarex.com *.approve.vhsoftwarex.com *.click.vhsoftwarex.com *.conference.vhsoftwarex.com *.dev.vhsoftwarex.com *.fn85te8.vhsoftwarex.com *.m.vhsoftwarex.com *.mail.vhsoftwarex.com *.members.vhsoftwarex.com *.notexistsowa.vhsoftwarex.com *.owa.vhsoftwarex.com *.test.vhsoftwarex.com vhsoftwarex.com *.vhsoftwarex.com *.www.vhsoftwarex.com
*.v.vinnavideos.com vinnavideos.com *.vinnavideos.com
*.516858ae-c03e-4c24-a07c-d0216c453417.xego.cc *.92bc6683-f636-400e-90d8-163410289c44.xego.cc *.hostmaster.xego.cc xego.cc *.xego.cc
yesrbookordercenter.com *.yesrbookordercenter.com