76/100 SECURITY SCORE

Certificate Information

Subject
CN=suchgoodpeoplemovie.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 19, 2026
Valid Until
August 17, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
52:C5:A4:4E:75:8D:67:E5:DA:22:CA:F2:49:A6:61:69:5C:29:F4:B4:D1:64:A6:F8:1B:CF:41:C4:D7:03:3A:C8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bestwms.com *.bestwms.com *.crm.bestwms.com *.hostmaster.bestwms.com *.www.bestwms.com

Other domains in certificate

3duvprinters.com *.3duvprinters.com
*.apostag.dmmp2p.eu *.bgamezw.dmmp2p.eu *.bodehaza.dmmp2p.eu *.bokod.dmmp2p.eu *.dev.dmmp2p.eu *.djpjke.dmmp2p.eu dmmp2p.eu *.dmmp2p.eu *.dmnvf.dmmp2p.eu *.downloadfreezone.dmmp2p.eu *.dunapataj.dmmp2p.eu *.egyhazasfalu.dmmp2p.eu *.fhpnjvii.dmmp2p.eu *.fpnmdyuf.dmmp2p.eu *.fzslob.dmmp2p.eu *.gavjocjmo.dmmp2p.eu *.gorcsony.dmmp2p.eu *.gyongyoshalasz.dmmp2p.eu *.hajos.dmmp2p.eu *.heagqyy.dmmp2p.eu *.hercegszanto.dmmp2p.eu *.hosszupereszteg.dmmp2p.eu *.ivancsa.dmmp2p.eu *.janossomorja.dmmp2p.eu *.jaszalsoszentgyorgy.dmmp2p.eu *.jobahaza.dmmp2p.eu *.klgpt.dmmp2p.eu *.kompolt.dmmp2p.eu *.lakitelek.dmmp2p.eu *.lqtraqog.dmmp2p.eu *.lrmjjzzf.dmmp2p.eu *.madaras.dmmp2p.eu *.malyinka.dmmp2p.eu *.mdwndlcap.dmmp2p.eu *.mlolshq.dmmp2p.eu *.nagykanizsa.dmmp2p.eu *.nagylozs.dmmp2p.eu *.nzyzgn.dmmp2p.eu *.ofalu.dmmp2p.eu *.opdyeg.dmmp2p.eu *.pilisszanto.dmmp2p.eu *.polgar.dmmp2p.eu *.qrslbvg.dmmp2p.eu *.rujge.dmmp2p.eu *.sffscypi.dmmp2p.eu *.smjcanz.dmmp2p.eu *.szogliget.dmmp2p.eu *.tarnokreti.dmmp2p.eu *.tiszaluc.dmmp2p.eu *.tlpjxuj.dmmp2p.eu *.udvari.dmmp2p.eu *.ukioxzns.dmmp2p.eu *.untsz.dmmp2p.eu *.varosfoeld.dmmp2p.eu *.venkq.dmmp2p.eu *.villany.dmmp2p.eu *.wmxafz.dmmp2p.eu *.xsvufwkch.dmmp2p.eu *.ybyhdime.dmmp2p.eu *.yundfkkwq.dmmp2p.eu
feuerforum.de *.feuerforum.de
*.admin.ggz-ebay.com *.cicd.ggz-ebay.com ggz-ebay.com *.ggz-ebay.com *.proxy.ggz-ebay.com *.qa.ggz-ebay.com *.staging.ggz-ebay.com *.ww25.ggz-ebay.com
hondacertifed.com *.hondacertifed.com *.sandbox.hondacertifed.com *.superset.hondacertifed.com
nfllive.net *.nfllive.net *.ww1.nfllive.net
*.hostmaster.onedayspa.com onedayspa.com *.onedayspa.com *.random.onedayspa.com
suchgoodpeoplemovie.com *.suchgoodpeoplemovie.com