Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=82426b.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 29, 2026
Valid Until
August 27, 2026 66 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:D4:1D:2A:79:DD:69:19:A7:C2:3B:37:83:36:03:DF:29:3A:09:19:32:6D:8A:CF:F8:EA:E8:D4:E8:D4:5F:71
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
lightscream.com *.lightscream.com

Other domains in certificate

82426b.com *.82426b.com
adelaidemotorsport.com.au *.adelaidemotorsport.com.au
al-hayl.net *.al-hayl.net
credithuman-02access.com *.credithuman-02access.com
cynthiaesco.bar *.cynthiaesco.bar
d32n.cyou *.d32n.cyou
dappraar.com *.dappraar.com
fincabinicomprat.com *.fincabinicomprat.com
get-strategicapp.com *.get-strategicapp.com
get-strategichub.com *.get-strategichub.com
get-strategiclabs.com *.get-strategiclabs.com
get-strategylabs.com *.get-strategylabs.com
get-strategysite.com *.get-strategysite.com
getacceleratehub.com *.getacceleratehub.com
getgrowth-team.com *.getgrowth-team.com
gnkem306.com *.gnkem306.com
gostorechatt.com *.gostorechatt.com
hello-codt.com *.hello-codt.com
hielectronest.com *.hielectronest.com
highfieldreserve.com *.highfieldreserve.com
kapalisports.com *.kapalisports.com
kodamatales.com *.kodamatales.com
krfcs.qpon *.krfcs.qpon
moonkln.pro *.moonkln.pro
mysterygame204.info *.mysterygame204.info
nataliekhoury.com *.nataliekhoury.com
naughtyvampires.com *.naughtyvampires.com
prosagetravel.live *.prosagetravel.live
qweuio234kjhsdf.top *.qweuio234kjhsdf.top
runningsho.shop *.runningsho.shop
shoujdeu.cfd *.shoujdeu.cfd
sqpi4.top *.sqpi4.top
travelgistnet.xyz *.travelgistnet.xyz
voltivia.com *.voltivia.com
xn--ettxuf49d.com *.xn--ettxuf49d.com
xn--gmq792alm2a.com *.xn--gmq792alm2a.com
xn--jvr982jpbj.com *.xn--jvr982jpbj.com
xn--kcr43oq3gim0c.com *.xn--kcr43oq3gim0c.com
xn--l63a.com *.xn--l63a.com
xn--mcrt45a.com *.xn--mcrt45a.com
xn--rht333atoy.com *.xn--rht333atoy.com
xn--wgv8u.com *.xn--wgv8u.com
xn--wlqq2m.com *.xn--wlqq2m.com
xn--xuu44i.com *.xn--xuu44i.com