76/100 SECURITY SCORE

Certificate Information

Subject
CN=animeboobs.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 19, 2026
Valid Until
July 18, 2026 59 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D5:99:74:63:E1:17:26:EC:B0:84:C7:F3:E3:52:5B:9E:F4:DC:67:25:A6:D8:75:C7:B3:4B:63:74:16:C1:0A:46
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
stateofgrace.it *.stateofgrace.it *.analytics.stateofgrace.it *.backend.stateofgrace.it *.bigdata.stateofgrace.it *.board.stateofgrace.it *.console.stateofgrace.it *.dashboards.stateofgrace.it *.data.stateofgrace.it *.dev.stateofgrace.it *.intel.stateofgrace.it *.intelligence.stateofgrace.it *.notexistsapi.stateofgrace.it *.notexistsdemo.stateofgrace.it *.notexistsowa.stateofgrace.it *.preview.stateofgrace.it *.staging.stateofgrace.it

Other domains in certificate

animeboobs.com *.animeboobs.com *.m.animeboobs.com *.sitemap.animeboobs.com
cdkaa.support *.cdkaa.support
dalbinowl.com *.dalbinowl.com *.random.dalbinowl.com
dumptytrumpty.com *.dumptytrumpty.com *.intranet.dumptytrumpty.com
ferraridirect.com *.ferraridirect.com
generalbags.com *.generalbags.com
golyahir.hu *.golyahir.hu
greatdeposit.com *.greatdeposit.com *.rawqpl65hm.greatdeposit.com *.ycy26r.greatdeposit.com
haus-liekedeeler.de *.haus-liekedeeler.de
hayw.online *.hayw.online
hd4.online *.hd4.online
larozatv.me *.larozatv.me *.www.larozatv.me
*.62cd63.magiclionsel.com magiclionsel.com *.magiclionsel.com *.random.magiclionsel.com *.school.magiclionsel.com *.word.magiclionsel.com
*.hostmaster.planetwin.click *.mailin1.planetwin.click planetwin.click *.planetwin.click
*.api.voteloser.com *.backup.voteloser.com *.dashboard.voteloser.com *.dev.voteloser.com *.mail.voteloser.com *.mailer.voteloser.com *.marketing.voteloser.com *.members.voteloser.com *.nabgwrustore.voteloser.com *.qa.voteloser.com *.qvtzdcloud.voteloser.com *.rds.voteloser.com *.rdweb.voteloser.com *.rustore.voteloser.com *.staging.voteloser.com *.stg.voteloser.com *.test.voteloser.com *.uat.voteloser.com *.v1.voteloser.com *.v2.voteloser.com voteloser.com *.voteloser.com *.web.voteloser.com *.www.voteloser.com
*.kpmotor.webase.in webase.in *.webase.in
*.ww25.xlanal.com xlanal.com *.xlanal.com