Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=luxcw.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 06, 2026
Valid Until
August 04, 2026 60 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:88:30:1C:D6:9F:FE:1F:9D:6D:05:FD:F0:FA:8A:C4:FC:94:B5:7A:0B:81:D0:EB:E1:EC:C7:AD:48:BA:DE:F3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
luxcw.com *.luxcw.com *.en.luxcw.com *.img1-fg.luxcw.com *.ww38.luxcw.com

Other domains in certificate

1praum.bet *.1praum.bet
amec.site *.amec.site *.mx.amec.site
betyap663.com *.betyap663.com *.games.betyap663.com *.m.betyap663.com *.rgs-jgame.betyap663.com
dama-popup.com *.dama-popup.com *.random.dama-popup.com
enhanced-verify.com *.enhanced-verify.com *.ww.enhanced-verify.com *.ww25.enhanced-verify.com *.ww38.enhanced-verify.com
golos-detei.online *.golos-detei.online *.ww25.golos-detei.online
*.billing.ladypunk.com *.d.ladypunk.com *.dev.ladypunk.com *.flowiseai.ladypunk.com *.ftp.ladypunk.com *.help.ladypunk.com *.hotfix.ladypunk.com *.india.ladypunk.com ladypunk.com *.ladypunk.com *.mail3.ladypunk.com *.ns2.ladypunk.com *.photos.ladypunk.com *.report.ladypunk.com *.reporting.ladypunk.com *.sandbox.ladypunk.com *.sc.ladypunk.com *.subscribe.ladypunk.com *.superset.ladypunk.com *.uat.ladypunk.com *.visualizations.ladypunk.com
*.dan.mortgagefraud.com.au mortgagefraud.com.au *.mortgagefraud.com.au
natesbagels.com *.natesbagels.com *.random.natesbagels.com *.ww25.natesbagels.com
nationaldebthelpline.org *.nationaldebthelpline.org *.random.nationaldebthelpline.org *.ww25.nationaldebthelpline.org *.www.nationaldebthelpline.org
ndakota.org *.ndakota.org *.ww25.ndakota.org
nelflix.com *.nelflix.com *.ww25.nelflix.com *.ww42.nelflix.com
newasiantv.info *.newasiantv.info *.ww25.newasiantv.info *.ww38.newasiantv.info
newsdocviral.com *.newsdocviral.com *.ww25.newsdocviral.com
newtoki303.com *.newtoki303.com *.ww25.newtoki303.com
ppg33.bet *.ppg33.bet
*.api.ratoneando.com *.bijou.ratoneando.com *.citi.ratoneando.com *.notexistsciti.ratoneando.com *.notexistsww.ratoneando.com ratoneando.com *.ratoneando.com *.ww.ratoneando.com *.ww25.ratoneando.com *.wwe.ratoneando.com *.www.ratoneando.com