76/100 SECURITY SCORE

Certificate Information

Subject
CN=clansec.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
48:33:A1:AD:17:EB:1B:6B:9E:90:50:BC:6B:C8:70:BA:92:06:54:08:B9:C0:09:85:F8:85:1A:4C:E8:DA:30:D5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
flopv.com *.flopv.com

Other domains in certificate

adaptiveboutique.com *.adaptiveboutique.com
aetherheat.com *.aetherheat.com
agarmods.com *.agarmods.com
bestdentistnearme.biz *.bestdentistnearme.biz
bestproxysites.net *.bestproxysites.net
bigfishrecruitment.com *.bigfishrecruitment.com
bother.info *.bother.info
*.analytics.bpt.app bpt.app *.bpt.app *.dfesa.bpt.app *.stpetersgs.bpt.app *.superset.bpt.app
breathtakingmaple.com *.breathtakingmaple.com
brucori.com *.brucori.com
bucknellfootballcamps.com *.bucknellfootballcamps.com
buy-cigarettes-online.com *.buy-cigarettes-online.com *.ww1.buy-cigarettes-online.com
caconventr.loan *.caconventr.loan
canlicasinobonuslari1.com *.canlicasinobonuslari1.com
chungtak.com *.chungtak.com
chunlin-snake.cn *.chunlin-snake.cn
citylight.app *.citylight.app
clansec.com *.clansec.com
drivingschoolnearme.biz *.drivingschoolnearme.biz
dropula.com *.dropula.com
drunkstore.com *.drunkstore.com
dzdlmy.cn *.dzdlmy.cn
estimaterent.com *.estimaterent.com
fabricate.app *.fabricate.app
farodelacosta.com *.farodelacosta.com
fietse.top *.fietse.top
gardennurturepro.live *.gardennurturepro.live
geovpn.net *.geovpn.net
serfseo.com *.serfseo.com *.sitemap.serfseo.com *.smm.serfseo.com
shadyraysfish.com *.shadyraysfish.com
shopsnearme.biz *.shopsnearme.biz
sidebarcoffee.com *.sidebarcoffee.com
singsell.com *.singsell.com
spinix888s.biz *.spinix888s.biz
stigmergy.institute *.stigmergy.institute
storageunitsnearme.biz *.storageunitsnearme.biz
tacticlegend619.top *.tacticlegend619.top
testkuaixiadan.cn *.testkuaixiadan.cn
texastroutmafia.com *.texastroutmafia.com
therallyshow.org *.therallyshow.org