76/100 SECURITY SCORE

Certificate Information

Subject
CN=ndsdl.cyou
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 08, 2026
Valid Until
July 07, 2026 46 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
23:13:AC:39:79:8E:D8:7E:C7:3E:75:85:3B:80:70:6A:B2:2D:EC:6F:5B:0A:A6:4A:DB:70:7E:07:3A:A1:7B:A3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
nell.it *.nell.it *.api.nell.it *.beta.nell.it *.dashboard.nell.it *.dev.nell.it *.hostmaster.nell.it *.remote.nell.it *.sch.nell.it *.staging.nell.it *.superset.nell.it *.toer.nell.it

Other domains in certificate

*.3c7ec335-96b2-4bd5-99a6-60d0b6fa37e2.adultainmentnow.live *.48809bbf-819c-477f-b20f-33767249d80e.adultainmentnow.live *.account.adultainmentnow.live *.adm.adultainmentnow.live *.admin.adultainmentnow.live adultainmentnow.live *.adultainmentnow.live *.api.adultainmentnow.live *.app.adultainmentnow.live *.assets.adultainmentnow.live *.backend.adultainmentnow.live *.beta.adultainmentnow.live *.blog.adultainmentnow.live *.demo.adultainmentnow.live *.dev.adultainmentnow.live *.edu.adultainmentnow.live *.f8d5836a-6281-41e7-a862-5e168b85524e.adultainmentnow.live *.hostmaster.adultainmentnow.live *.portal.adultainmentnow.live *.psicnadmin.adultainmentnow.live *.test.adultainmentnow.live *.webmail.adultainmentnow.live *.www.adultainmentnow.live
*.dev.donaldjtrump2025.com donaldjtrump2025.com *.donaldjtrump2025.com
*.07be4b0d-7355-4218-a163-cf98f45be34c.ensemblepay.support *.admin.ensemblepay.support *.api.ensemblepay.support *.app.ensemblepay.support *.assets.ensemblepay.support *.backend.ensemblepay.support *.dashboard.ensemblepay.support *.dev.ensemblepay.support *.eed74417-d82e-43f3-8d62-488691d90d79.ensemblepay.support ensemblepay.support *.ensemblepay.support *.members.ensemblepay.support *.panel.ensemblepay.support *.test.ensemblepay.support *.webmail.ensemblepay.support *.yaehodev.ensemblepay.support
*.38665bbe-aedd-480c-a460-8617b63766e5.highendshop.shop *.admin.highendshop.shop *.api.highendshop.shop *.app.highendshop.shop *.assets.highendshop.shop *.atendimento.highendshop.shop *.demo.highendshop.shop *.dev.highendshop.shop *.docs.highendshop.shop *.external.highendshop.shop highendshop.shop *.highendshop.shop *.hostmaster.highendshop.shop *.intranet.highendshop.shop *.members.highendshop.shop *.my.highendshop.shop *.share.highendshop.shop *.sharepoint.highendshop.shop *.staging.highendshop.shop *.test.highendshop.shop *.www.highendshop.shop
*.co.hnn36.com *.com.hnn36.com hnn36.com *.hnn36.com
ndsdl.cyou *.ndsdl.cyou
swollenankles.au *.swollenankles.au *.ww25.swollenankles.au
*.b7420df3-c9bf-4f31-8e26-9c49f5d766c7.thehateshop.com *.img.thehateshop.com *.out.thehateshop.com *.test.thehateshop.com thehateshop.com *.thehateshop.com