76/100 SECURITY SCORE

Certificate Information

Subject
CN=03962.one
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 28, 2026
Valid Until
August 26, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:B4:C2:30:2E:6C:AC:4A:BF:D4:64:10:B5:5C:80:17:2F:0F:B0:0D:5B:48:48:57:A4:64:19:E5:99:AF:25:62
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
faresnipers.com *.faresnipers.com

Other domains in certificate

03962.one *.03962.one
47731.blog *.47731.blog
50709.town *.50709.town
50767.blog *.50767.blog
546555q.cc *.546555q.cc
56328.blog *.56328.blog
63658.club *.63658.club
63703.my *.63703.my
73151.town *.73151.town
75009.my *.75009.my
7559b.co *.7559b.co
7t2t9.lol *.7t2t9.lol
82554.co *.82554.co
95253.club *.95253.club
aqtaxfile.com *.aqtaxfile.com
aszxw.loan *.aszxw.loan
casino-vulcan14.cfd *.casino-vulcan14.cfd
echedate.xyz *.echedate.xyz
engineershopz.com *.engineershopz.com
enhancedtravelroute.live *.enhancedtravelroute.live
fiedl.com *.fiedl.com
finual.com *.finual.com
fixcreditplusllc.com *.fixcreditplusllc.com
fuckthiscunt.com *.fuckthiscunt.com
gccdns.net *.gccdns.net
getrich-lkg82.sbs *.getrich-lkg82.sbs
golfpronet.com *.golfpronet.com
j237h.lol *.j237h.lol
mont-erry-715130366.click *.mont-erry-715130366.click
mysticmaster321.shop *.mysticmaster321.shop
neoguardian541.top *.neoguardian541.top
neoninja325.top *.neoninja325.top
neorace844.info *.neorace844.info
neosi.com *.neosi.com
nerwcpk592.vip *.nerwcpk592.vip
nettsolutionsppclabs.com *.nettsolutionsppclabs.com
nettsolutionsppcnetwork.com *.nettsolutionsppcnetwork.com
neurology-medical-814250399.click *.neurology-medical-814250399.click
pacificcommercialservices.com *.pacificcommercialservices.com
skin-rejuvenation-5c4k9n3g2n1.sbs *.skin-rejuvenation-5c4k9n3g2n1.sbs
tamilmv.cam *.tamilmv.cam
the-festival.info *.the-festival.info
w13724703.com *.w13724703.com
wisdomtravelline.xyz *.wisdomtravelline.xyz