76/100 SECURITY SCORE

Certificate Information

Subject
CN=build4you.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 02, 2026
Valid Until
July 31, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:5C:45:5F:10:96:78:7C:58:9D:9C:04:42:E2:C7:A6:3B:2D:80:C5:AA:F8:28:A2:8A:57:1C:1D:58:0C:D9:81
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
docupt.com *.docupt.com *.kingston.docupt.com *.maricopaty.docupt.com *.web.docupt.com

Other domains in certificate

allensportsassociation.com *.allensportsassociation.com *.controlpanel.allensportsassociation.com *.random.allensportsassociation.com *.www-1.allensportsassociation.com
*.app.build4you.com *.avito.build4you.com *.beta.build4you.com build4you.com *.build4you.com *.ozon.build4you.com *.sberbank.build4you.com *.sbermegamarket.build4you.com *.www.build4you.com
*.dating.redlstowing.com redlstowing.com *.redlstowing.com *.sitemap.redlstowing.com *.sitemaps.redlstowing.com *.store.redlstowing.com *.users.redlstowing.com *.video.redlstowing.com *.wiki.redlstowing.com
*.analytics.ristorantiitaliani.com *.argo.ristorantiitaliani.com *.backend.ristorantiitaliani.com *.bbs.ristorantiitaliani.com *.bi.ristorantiitaliani.com *.dashs.ristorantiitaliani.com *.dev.ristorantiitaliani.com *.hostmaster.ristorantiitaliani.com *.intel.ristorantiitaliani.com *.mail.ristorantiitaliani.com *.relay.ristorantiitaliani.com ristorantiitaliani.com *.ristorantiitaliani.com *.smtp3.ristorantiitaliani.com *.staging.ristorantiitaliani.com *.www.ristorantiitaliani.com
*.integration.shura.live *.prod.shura.live *.report.shura.live shura.live *.shura.live
*.anrucq.wxzx7.cfd *.bgogue.wxzx7.cfd *.bioech.wxzx7.cfd *.btxkdf.wxzx7.cfd *.cmdsyk.wxzx7.cfd *.deq.wxzx7.cfd *.dnd.wxzx7.cfd *.dqu.wxzx7.cfd *.dtptws.wxzx7.cfd *.ezo.wxzx7.cfd *.fjgtaw.wxzx7.cfd *.izm.wxzx7.cfd *.jagyzr.wxzx7.cfd *.kbwfgs.wxzx7.cfd *.krk.wxzx7.cfd *.ksw.wxzx7.cfd *.owf.wxzx7.cfd *.ozvffc.wxzx7.cfd *.pspnai.wxzx7.cfd *.qmrnym.wxzx7.cfd *.qrabaz.wxzx7.cfd *.random.wxzx7.cfd *.rzxdwa.wxzx7.cfd *.sdz.wxzx7.cfd *.tpmdkm.wxzx7.cfd *.udajia.wxzx7.cfd *.uumjav.wxzx7.cfd *.wiuovp.wxzx7.cfd wxzx7.cfd *.wxzx7.cfd
*.bip.ziluoli2.beauty *.ccl.ziluoli2.beauty *.jpo.ziluoli2.beauty *.noa.ziluoli2.beauty *.pnc.ziluoli2.beauty *.random.ziluoli2.beauty *.ww25.ziluoli2.beauty *.yyr.ziluoli2.beauty ziluoli2.beauty *.ziluoli2.beauty