Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=mayama.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 10, 2026
Valid Until
May 11, 2026 79 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B3:E7:5C:03:C2:79:A6:21:83:4D:05:60:45:23:C9:02:0A:5C:41:C9:F3:5E:55:83:CA:3D:31:0A:85:7B:85:50
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
mayama.com *.mayama.com *.demo.mayama.com *.m.mayama.com *.si.mayama.com *.store.mayama.com *.w.mayama.com *.wiki.mayama.com *.ww1.mayama.com *.ww25.mayama.com

Other domains in certificate

aphilosophyofdesign.com *.aphilosophyofdesign.com *.blog.aphilosophyofdesign.com *.mailer.aphilosophyofdesign.com *.rdweb.aphilosophyofdesign.com *.secure.aphilosophyofdesign.com *.vpn.aphilosophyofdesign.com
*.aniqmail.badenbaden.com badenbaden.com *.badenbaden.com *.blog.badenbaden.com *.casino.badenbaden.com *.correo.badenbaden.com *.correu.badenbaden.com *.email.badenbaden.com *.eposta.badenbaden.com *.exch2016.badenbaden.com *.exchange.badenbaden.com *.exchangecorp.badenbaden.com *.exchmail.badenbaden.com *.exmail2.badenbaden.com *.fckarlsom.badenbaden.com *.film.badenbaden.com *.hostmaster.badenbaden.com *.m.badenbaden.com *.mail.badenbaden.com *.mail1.badenbaden.com *.mail3.badenbaden.com *.msexch2k13.badenbaden.com *.mvideo.badenbaden.com *.mx001.badenbaden.com *.mymail.badenbaden.com *.mywebmail.badenbaden.com *.newmail2013.badenbaden.com *.ogrencieposta.badenbaden.com *.owa.badenbaden.com *.portal.badenbaden.com *.remote.badenbaden.com *.remote2.badenbaden.com *.sitemap.badenbaden.com *.sitemaps.badenbaden.com *.smail.badenbaden.com *.smtpa.badenbaden.com *.ssl.badenbaden.com *.sslvpn.badenbaden.com *.sslvpn2.badenbaden.com *.test.badenbaden.com *.vpn.badenbaden.com *.vpn2.badenbaden.com *.vpn3.badenbaden.com *.webmail.badenbaden.com *.webmail05.badenbaden.com *.webmail2013.badenbaden.com *.wildcard.badenbaden.com *.ww1.badenbaden.com *.ww16.badenbaden.com *.ww17.badenbaden.com *.ww25.badenbaden.com *.ww38.badenbaden.com *.www.badenbaden.com
cristhian.studio *.cristhian.studio
*.2c61232b-ebcd-474a-a1ed-d33c4f0071e6.feesfreeloan.com *.api.feesfreeloan.com feesfreeloan.com *.feesfreeloan.com *.mta-sts.feesfreeloan.com *.rds.feesfreeloan.com
*.agxaqpgdwz.me-invite.com *.bbqbytest.me-invite.com *.dev.me-invite.com *.dqrdcghte1.me-invite.com *.gipsrvcl.me-invite.com *.mail.me-invite.com me-invite.com *.me-invite.com *.sfhznijm.me-invite.com *.wwwdashboard.me-invite.com *.xnwbucpl.me-invite.com *.xxjuatest.me-invite.com