76/100 SECURITY SCORE

Certificate Information

Subject
CN=btcinsured.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 24, 2026
Valid Until
July 23, 2026 71 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
41:27:B5:9E:CD:7B:97:13:68:85:FA:58:99:FD:3B:BF:C3:0B:75:7A:07:C8:74:E4:C2:D6:38:36:8B:58:AB:5C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
btcinsured.com *.btcinsured.com *.api.btcinsured.com *.backup.btcinsured.com *.blog.btcinsured.com *.cf247d68-5d32-4b25-bb14-2c20fb06b4b1.btcinsured.com *.crm.btcinsured.com *.dashboard.btcinsured.com *.fogpoblog.btcinsured.com *.forum.btcinsured.com *.ftp.btcinsured.com *.hostmaster.btcinsured.com *.mail.btcinsured.com *.new.btcinsured.com *.old.btcinsured.com *.prod.btcinsured.com *.store.btcinsured.com *.wildcard.btcinsured.com

Other domains in certificate

*.1a93aa3e-2fbb-4fff-bcaf-6b9bfc031122.getyang.com *.34a6c573-4ad4-4748-afe1-7f82d125e7b9.getyang.com *.4bf575cc-6172-4ec4-91d9-5bd2d9d25743.getyang.com *.a.getyang.com *.access.getyang.com *.app.getyang.com *.apps.getyang.com *.bnzoustg.getyang.com *.dbb9955c-fc4d-42f6-9986-bdcd0b5aea06.getyang.com *.desktop.getyang.com *.dev.getyang.com *.english.getyang.com *.fjhmqrdweb.getyang.com *.gateway.getyang.com *.genetickanjiblog.getyang.com getyang.com *.getyang.com *.gp.getyang.com *.hostmaster.getyang.com *.ipv6.getyang.com *.jegozra.getyang.com *.kwpbvdrkkdgp.getyang.com *.m.getyang.com *.mail.getyang.com *.mailer.getyang.com *.ms1.getyang.com *.portal.getyang.com *.pt.getyang.com *.ra.getyang.com *.rdweb.getyang.com *.remoteapp.getyang.com *.remoto.getyang.com *.secure.getyang.com *.sslvpn.getyang.com *.test.getyang.com *.v1.getyang.com *.v2.getyang.com *.vpn1.getyang.com *.vpn2.getyang.com *.vpnssl.getyang.com *.ww25.getyang.com *.yfdvqzwgkhvpn1.getyang.com *.zwgkhvpn1.getyang.com
innovarenalcenter.com *.innovarenalcenter.com
*.admin.joyride.it *.analytics.joyride.it *.backend.joyride.it *.demo.joyride.it *.dev.joyride.it *.fmcekdev.joyride.it joyride.it *.joyride.it *.notexistsapi.joyride.it *.preprod-superset.joyride.it *.remote.joyride.it *.reporting.joyride.it *.superset.joyride.it
*.mail.rebootcyber.xyz rebootcyber.xyz *.rebootcyber.xyz
*.ffffffffffff.suite.com.au *.gd.suite.com.au *.iccp.suite.com.au *.simpro.suite.com.au suite.com.au *.suite.com.au *.thegifting.suite.com.au *.ww25.suite.com.au
*.u555.uc88.vip uc88.vip *.uc88.vip