76/100 SECURITY SCORE

Certificate Information

Subject
CN=autoweek.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 23, 2026
Valid Until
April 23, 2026 58 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
20:22:1A:28:12:24:DB:1B:C2:53:53:A1:D2:B3:A1:B0:2C:7B:03:95:5D:A5:A8:68:F2:09:DF:6F:BE:FE:41:D9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
nexusmod.com *.nexusmod.com *.38.nexusmod.com *.darksouls.nexusmod.com *.forums.nexusmod.com *.integration.nexusmod.com *.skyrim.nexusmod.com *.user.nexusmod.com *.users.nexusmod.com *.ww.nexusmod.com *.ww3.nexusmod.com *.ww38.nexusmod.com *.ww3user.nexusmod.com *.wwusers.nexusmod.com *.www.nexusmod.com *.wwwuser.nexusmod.com *.xn--nsra.nexusmod.com

Other domains in certificate

autoweek.live *.autoweek.live *.email.autoweek.live *.ww38.autoweek.live *.www.autoweek.live
berdoodles.com *.berdoodles.com *.ww17.berdoodles.com *.ww38.berdoodles.com
*.91369c93-87a6-4d7e-ab43-3d035f5db030.cricktime.live cricktime.live *.cricktime.live *.www.cricktime.live
*.correo.cristello.com cristello.com *.cristello.com *.ex02.cristello.com *.kndzxohsny.cristello.com *.login.cristello.com *.mail.cristello.com *.outlook.cristello.com *.scrm.cristello.com *.sip.cristello.com *.to.cristello.com *.tom.cristello.com *.webmail.cristello.com
h3mods.com *.h3mods.com *.ww16.h3mods.com *.ww25.h3mods.com
jurisaprendiz.com.br *.jurisaprendiz.com.br *.loja.jurisaprendiz.com.br *.ns1.jurisaprendiz.com.br *.ns2.jurisaprendiz.com.br *.ns3.jurisaprendiz.com.br *.ww25.jurisaprendiz.com.br
mature1.com *.mature1.com
mypremercreditcard.com *.mypremercreditcard.com *.ww25.mypremercreditcard.com
no-fee-injury-lawyers244288.icu *.no-fee-injury-lawyers244288.icu
obediencetraining292355.icu *.obediencetraining292355.icu
ourootz.co *.ourootz.co
simon-statik.de *.simon-statik.de
t8nder.com *.t8nder.com *.ww25.t8nder.com
trophycase.cc *.trophycase.cc
*.ftp.usportangola.com usportangola.com *.usportangola.com *.ww25.usportangola.com
warehouseforkliftjobs652069.icu *.warehouseforkliftjobs652069.icu
*.sitemap.wearpump.store wearpump.store *.wearpump.store *.www.wearpump.store
weight-loss-injections042091.icu *.weight-loss-injections042091.icu
*.india.womensaflstars.com *.random.womensaflstars.com womensaflstars.com *.womensaflstars.com