Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=eslotseven.cfd
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 18, 2026
Valid Until
May 19, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B5:02:87:2E:4F:28:1E:4C:37:EE:58:87:43:D0:E8:7E:CE:37:19:53:1E:47:F3:95:A9:51:43:23:39:A9:7A:85
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
jonathanbrewer.com *.jonathanbrewer.com *.sitemaps.jonathanbrewer.com

Other domains in certificate

bloggeer.com *.bloggeer.com *.ebay.bloggeer.com *.ww25.bloggeer.com
casemods.com *.casemods.com *.internal.casemods.com
eslotseven.cfd *.eslotseven.cfd *.hrka1.eslotseven.cfd *.nslow.eslotseven.cfd *.wsct4.eslotseven.cfd
financialcounsellor.au *.financialcounsellor.au
*.23350bad-1edd-4568-b3d6-e5e172b338c5.gbiall.com *.app.gbiall.com *.assets.gbiall.com *.beheer.gbiall.com *.cloud.gbiall.com *.dev.gbiall.com *.firewall.gbiall.com gbiall.com *.gbiall.com *.helpdesk.gbiall.com *.nsxysdemo.gbiall.com *.qnpfkrd.gbiall.com *.rd.gbiall.com *.rds.gbiall.com *.rdweb.gbiall.com *.test.gbiall.com *.vdi.gbiall.com *.vpn.gbiall.com *.www.gbiall.com
*.cor.geb.us geb.us *.geb.us
*.cxie3.grandtravelexpeditions.xyz grandtravelexpeditions.xyz *.grandtravelexpeditions.xyz *.ip4i2.grandtravelexpeditions.xyz *.jxc88.grandtravelexpeditions.xyz *.kwid9.grandtravelexpeditions.xyz
*.ebay.kinri.com kinri.com *.kinri.com *.wiki.kinri.com *.ww38.kinri.com
*.api.minecrftapk.download *.dev.minecrftapk.download *.mail.minecrftapk.download *.marketing.minecrftapk.download minecrftapk.download *.minecrftapk.download *.mwzgtapp.minecrftapk.download *.new.minecrftapk.download *.qa.minecrftapk.download *.staging.minecrftapk.download *.test.minecrftapk.download *.uat.minecrftapk.download *.www.minecrftapk.download
*.cpanel.prettypub.com *.cpcontacts.prettypub.com prettypub.com *.prettypub.com *.whm.prettypub.com *.www.prettypub.com
selcuksportshd1100.xyz *.selcuksportshd1100.xyz *.www.selcuksportshd1100.xyz
*.superset.telefonoerotico.com telefonoerotico.com *.telefonoerotico.com
*.eu3rm.tm334.top *.fdy0p.tm334.top *.jyikv.tm334.top *.svzzq.tm334.top tm334.top *.tm334.top *.vhakn.tm334.top *.z4r76.tm334.top
*.ebmail.zimac.it *.mx1.zimac.it *.smtp.zimac.it *.webmail.zimac.it *.www.zimac.it zimac.it *.zimac.it