76/100 SECURITY SCORE

Certificate Information

Subject
CN=thelazyprincebecomesagenius.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 19, 2026
Valid Until
April 19, 2026 55 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
86:D7:0B:C8:D8:0B:E5:CA:F6:12:0F:19:CD:B4:79:6B:6D:0D:79:A6:2E:09:67:ED:10:C4:74:38:98:80:19:2F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
accommodation.live *.accommodation.live *.git.accommodation.live *.m.accommodation.live *.remote.accommodation.live *.webmail.accommodation.live *.ww25.accommodation.live *.www.accommodation.live

Other domains in certificate

a0a.shop *.a0a.shop *.d806666797eb.a0a.shop *.fay.a0a.shop *.sinfuldeeds.a0a.shop *.summerxiris.a0a.shop
bapautotojp1.bet *.bapautotojp1.bet *.ww25.bapautotojp1.bet
boom1881.pro *.boom1881.pro
boozagon.com.au *.boozagon.com.au
brhan.store *.brhan.store
brickzone.store *.brickzone.store
buymeds.org *.buymeds.org *.m.buymeds.org *.random.buymeds.org
derechosinmigrantes.info *.derechosinmigrantes.info *.ww25.derechosinmigrantes.info *.ww38.derechosinmigrantes.info
diabetis.ca *.diabetis.ca
get100.vip *.get100.vip *.ww25.get100.vip
ionpie.com *.ionpie.com
kadaymag.com *.kadaymag.com
lapazstorage.com *.lapazstorage.com
*.83609068-1c96-11ec-9b3b-7446a0f5ea00.microsoftjobs.com microsoftjobs.com *.microsoftjobs.com *.panel.microsoftjobs.com *.sqs.microsoftjobs.com *.www.microsoftjobs.com
missoulafbi.com *.missoulafbi.com
mt444.top *.mt444.top *.random.mt444.top *.ww16.mt444.top *.ww25.mt444.top
*.cpanel.nedapasand.com *.games.nedapasand.com nedapasand.com *.nedapasand.com *.random.nedapasand.com
newwriterslibrary.com *.newwriterslibrary.com
portable-ultrasound-scans.net *.portable-ultrasound-scans.net
rosalind.email *.rosalind.email
*.autodiscover.taylorpla.net taylorpla.net *.taylorpla.net
thecandletown.com *.thecandletown.com *.ww25.thecandletown.com *.ww38.thecandletown.com
thelazyprincebecomesagenius.online *.thelazyprincebecomesagenius.online *.wap.thelazyprincebecomesagenius.online *.web.thelazyprincebecomesagenius.online
vagasurgentessp.com *.vagasurgentessp.com
*.835ktb.x99av164.xyz *.8tn1gh1.x99av164.xyz *.eoddaw.x99av164.xyz *.pl5f88.x99av164.xyz *.ww25.x99av164.xyz x99av164.xyz *.x99av164.xyz *.y70kwv.x99av164.xyz