Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=eggrate.info
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 31, 2026
Valid Until
May 01, 2026
78 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B1:A7:FE:EA:FA:88:F8:90:72:1E:81:A9:8F:C5:3D:CE:40:AF:00:F3:EB:D4:C5:08:25:83:82:DA:7A:DE:94:E9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
liweng.com
*.liweng.com
eggrate.info
*.eggrate.info
esm-3.com
*.esm-3.com
flighteum.com
*.flighteum.com
green-fitness.hu
*.green-fitness.hu
gro-biz.org
*.gro-biz.org
harleycoin.com
*.harleycoin.com
hh6.in
*.hh6.in
hockeybust.com
*.hockeybust.com
idaratarbawya.com
*.idaratarbawya.com
im-newsq.com
*.im-newsq.com
infamo.com
*.infamo.com
infantglossary.com
*.infantglossary.com
influencerhq.app
*.influencerhq.app
ingyenceg.hu
*.ingyenceg.hu
injertos.com
*.injertos.com
kickpushmovie.nl
*.kickpushmovie.nl
kingcorners.com
*.kingcorners.com
legacies.net
*.legacies.net
lernsax.com
*.lernsax.com
lifetv.sx
*.lifetv.sx
liwahotelapartments.com
*.liwahotelapartments.com
loveandweddingscelebrate.beauty
*.loveandweddingscelebrate.beauty
misia-nov-dom.com
*.misia-nov-dom.com
mobicontracts.com
*.mobicontracts.com
motosbaratos.com
*.motosbaratos.com
nalovy.sk
*.nalovy.sk
nitida.com
*.nitida.com
nitroenso.com
*.nitroenso.com
omesiry.com
*.omesiry.com
omnirad.hu
*.omnirad.hu
opuniafdlpnsfhwcbnea.com
*.opuniafdlpnsfhwcbnea.com
pgslotregist.com
*.pgslotregist.com
polo77buts.lol
*.polo77buts.lol
pt.help
*.pt.help
pzilmo.pro
*.pzilmo.pro
raccontierotici.top
*.raccontierotici.top
rclothes.com
*.rclothes.com
rizzsites.com
*.rizzsites.com
rouleaux.com
*.rouleaux.com
schleef.com
*.schleef.com
tapata.com
*.tapata.com
tutorsikat88.watch
*.tutorsikat88.watch
xiu4051a.cc
*.xiu4051a.cc
xn--a-8m6bk08arwf.com
*.xn--a-8m6bk08arwf.com
Other domains in certificate