76/100 SECURITY SCORE

Certificate Information

Subject
CN=gzhpjsjj.cn
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 06, 2026
Valid Until
September 04, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
46:D0:58:DC:80:AA:43:83:BB:CB:3F:C0:4C:EC:DB:90:0F:BD:04:04:0C:F6:F1:B4:E4:8A:12:C7:F2:56:11:A6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
perfect.spot *.perfect.spot *.4e383661-d1d0-44b9-b521-d8c1eaa588c8.perfect.spot *.a.perfect.spot *.aleksandrina.perfect.spot *.ansolutely.perfect.spot *.api.perfect.spot *.assets.perfect.spot *.dashboard.perfect.spot *.demo.perfect.spot *.dev.perfect.spot *.dpqaiytmjqf.perfect.spot *.ezrwothe.perfect.spot *.mail.perfect.spot *.mailer.perfect.spot *.marketing.perfect.spot *.qa.perfect.spot *.smtp.perfect.spot *.staging.perfect.spot *.stg.perfect.spot *.the.perfect.spot *.total.perfect.spot *.v1.perfect.spot *.v2.perfect.spot *.vbcmfkgu.perfect.spot *.web.perfect.spot

Other domains in certificate

1145clx301.top *.1145clx301.top *.4d89ecaa28.1145clx301.top *.55367bbcc9.1145clx301.top *.870172f1d3.1145clx301.top *.9deddc01a7.1145clx301.top
*.backup.designbd.org designbd.org *.designbd.org *.pop3.designbd.org *.uat.designbd.org *.webmail.designbd.org
*.dal.gzhpjsjj.cn gzhpjsjj.cn *.gzhpjsjj.cn *.mc.gzhpjsjj.cn
*.45urowfmodo6uvt7d637xvag3.highlifereisen.at *.anzhuo.highlifereisen.at *.aootdwnmwuww.highlifereisen.at *.app.highlifereisen.at *.apps.highlifereisen.at *.cloud.highlifereisen.at *.demo.highlifereisen.at *.email.highlifereisen.at *.emv1.highlifereisen.at highlifereisen.at *.highlifereisen.at *.ipv6.highlifereisen.at *.m.highlifereisen.at *.mail.highlifereisen.at *.mail1.highlifereisen.at *.mobile.highlifereisen.at *.mqldbanzhuo.highlifereisen.at *.mx.highlifereisen.at *.pay.highlifereisen.at *.sitemap.highlifereisen.at *.support.highlifereisen.at *.ukeitjws.highlifereisen.at *.ups.highlifereisen.at *.vps.highlifereisen.at *.web.highlifereisen.at *.webdisk.highlifereisen.at *.wss.highlifereisen.at *.www.highlifereisen.at *.www6.highlifereisen.at *.yojowwebdisk.highlifereisen.at *.zoom.highlifereisen.at
medicis.it *.medicis.it *.villa.medicis.it *.www.medicis.it
*.0afmf.mlgamestarlight.xyz *.1d817.mlgamestarlight.xyz *.bnbod.mlgamestarlight.xyz *.cg4o5.mlgamestarlight.xyz *.civoh.mlgamestarlight.xyz *.dev.mlgamestarlight.xyz *.hrka1.mlgamestarlight.xyz mlgamestarlight.xyz *.mlgamestarlight.xyz *.q2s8t.mlgamestarlight.xyz *.s5kjz.mlgamestarlight.xyz *.z44ag.mlgamestarlight.xyz *.zl1z8.mlgamestarlight.xyz