76/100 SECURITY SCORE

Certificate Information

Subject
CN=black-door.io
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 31, 2026
Valid Until
May 01, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:A4:BF:29:77:5D:7B:3F:25:8A:ED:11:D0:C5:7D:F6:E2:51:8E:D4:B5:08:D4:07:12:58:24:03:11:C2:85:FF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
printstudy.com *.printstudy.com *.hostmaster.printstudy.com

Other domains in certificate

2raw.com *.2raw.com *.rdweb.2raw.com
amgbridge.com *.amgbridge.com *.rdweb.amgbridge.com *.remote.amgbridge.com
*.02u.black-door.io *.13r.black-door.io black-door.io *.black-door.io *.hs.black-door.io *.mail.black-door.io *.services.black-door.io *.sitemaps.black-door.io *.subscribe.black-door.io *.ww25.black-door.io *.ww38.black-door.io
codigossagradosplus.net *.codigossagradosplus.net *.mail.codigossagradosplus.net *.ww38.codigossagradosplus.net
dabmediaventures.com *.dabmediaventures.com *.sitemaps.dabmediaventures.com *.www.dabmediaventures.com
*.ftp.mindak.com mindak.com *.mindak.com *.vpn.mindak.com
*.ehall.sh-wenhao.com sh-wenhao.com *.sh-wenhao.com
silentgossipbase.live *.silentgossipbase.live
suntukan.com *.suntukan.com
tediaresolv.com *.tediaresolv.com
*.dev.tinviet.com tinviet.com *.tinviet.com
totomacau123.net *.totomacau123.net
trypikalabs.com *.trypikalabs.com
tutorialkuil69.com *.tutorialkuil69.com
ue5kij0.top *.ue5kij0.top
un28.top *.un28.top
uniqueweddingstoday.beauty *.uniqueweddingstoday.beauty
useadsgency.com *.useadsgency.com
vf81.top *.vf81.top
vjgu654.cyou *.vjgu654.cyou
vns278.cc *.vns278.cc
winplaychina99.net *.winplaychina99.net
wipin.com *.wipin.com *.ww38.wipin.com
world1688-vipth.com *.world1688-vipth.com
wuyouwork.report *.wuyouwork.report
wwwrestaurant.com *.wwwrestaurant.com
x2fdwnb.top *.x2fdwnb.top
xn--6zyw21b.com *.xn--6zyw21b.com
xpkpd.bid *.xpkpd.bid
yobiki.pro *.yobiki.pro
zfnmldso.click *.zfnmldso.click
zfumldso.click *.zfumldso.click