Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=comparetransfer.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:02:51:C7:93:BE:10:9E:7D:DB:21:6F:E1:7E:1C:FA:A5:BC:6F:05:7F:3C:E6:23:75:0A:E5:90:C8:86:82:B4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
liangge.com
*.liangge.com
169bet.bet
*.169bet.bet
*.admin.169bet.bet
*.api.169bet.bet
*.aws.169bet.bet
*.blog.169bet.bet
*.m.169bet.bet
*.sitemap.169bet.bet
*.ar.comparetransfer.com
*.au.comparetransfer.com
*.bg.comparetransfer.com
*.br.comparetransfer.com
*.bu.comparetransfer.com
*.ca.comparetransfer.com
*.co.comparetransfer.com
comparetransfer.com
*.comparetransfer.com
*.cr.comparetransfer.com
*.cy.comparetransfer.com
*.ee.comparetransfer.com
*.fi.comparetransfer.com
*.hu.comparetransfer.com
*.ie.comparetransfer.com
*.il.comparetransfer.com
*.jp.comparetransfer.com
*.kr.comparetransfer.com
*.mt.comparetransfer.com
*.my.comparetransfer.com
*.no.comparetransfer.com
*.pt.comparetransfer.com
*.ro.comparetransfer.com
*.sg.comparetransfer.com
*.tn.comparetransfer.com
*.tr.comparetransfer.com
*.tw.comparetransfer.com
*.ww25.comparetransfer.com
jessicaivy.com
*.jessicaivy.com
*.mail.jessicaivy.com
*.vpn.jessicaivy.com
katun.cc
*.katun.cc
*.ww25.katun.cc
khosro.com
*.khosro.com
koponen.com
*.koponen.com
kuponus.com
*.kuponus.com
kurcaci.com
*.kurcaci.com
landingvisa.com
*.landingvisa.com
laproprete.com
*.laproprete.com
larky.net
*.larky.net
laumon.com
*.laumon.com
launa.com
*.launa.com
launidad.com
*.launidad.com
laurahooper.com
*.laurahooper.com
lerouet.com
*.lerouet.com
leschenes.com
*.leschenes.com
ligadefutbol.com
*.ligadefutbol.com
limagier.com
*.limagier.com
liveis.com
*.liveis.com
ljdy.com
*.ljdy.com
llantasalgosa.com
*.llantasalgosa.com
llavallol.com
*.llavallol.com
lombardie.com
*.lombardie.com
loshechos.com
*.loshechos.com
losprimeros.com
*.losprimeros.com
Other domains in certificate