Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=sevenstars-hk.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
58:B7:51:52:52:7C:4B:20:2F:9C:5B:0D:54:B3:4B:42:57:EE:66:C2:8E:9F:E0:4E:43:7A:C6:5C:6C:31:79:A8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
naati.com *.naati.com *.ffffffffffff.naati.com *.instagram.naati.com *.my.naati.com *.ww17.naati.com

Other domains in certificate

adhoc.life *.adhoc.life *.server.adhoc.life *.vps.adhoc.life *.ww38.adhoc.life *.www.adhoc.life
akaishi-miso.com *.akaishi-miso.com *.wildcard.akaishi-miso.com *.ww25.akaishi-miso.com
*.backend.boomerangcasinoturkey.com boomerangcasinoturkey.com *.boomerangcasinoturkey.com *.staging.boomerangcasinoturkey.com
campbell.ltd *.campbell.ltd *.random.campbell.ltd *.wildcard.campbell.ltd *.ww25.campbell.ltd
*.anyconnect.chisholmfamily.com *.apps.chisholmfamily.com chisholmfamily.com *.chisholmfamily.com
*.dev13.elevenelite.com elevenelite.com *.elevenelite.com *.majaledev13.elevenelite.com
*.access.faggio.com *.admin.faggio.com *.apps.faggio.com faggio.com *.faggio.com *.rdweb.faggio.com
*.advantagechiropracticclinic.fheval.com fheval.com *.fheval.com
getmesec.xyz *.getmesec.xyz *.hostmaster.getmesec.xyz *.random.getmesec.xyz *.ww17.getmesec.xyz *.ww25.getmesec.xyz
jps.life *.jps.life *.wildcard.jps.life
*.dev.letitfail.com letitfail.com *.letitfail.com *.secure.letitfail.com
lp4u.com *.lp4u.com *.mail.lp4u.com *.random.lp4u.com
misis.com *.misis.com *.visiontest.misis.com
*.can.nandagopal.com nandagopal.com *.nandagopal.com *.ww38.nandagopal.com
pornxex.top *.pornxex.top *.s.pornxex.top
safanews.com *.safanews.com
*.desktops1.sevenstars-hk.com sevenstars-hk.com *.sevenstars-hk.com
*.cpanel.tabaradiology.com tabaradiology.com *.tabaradiology.com *.tabaradiology.tabaradiology.com
*.staging.thesecoya.com thesecoya.com *.thesecoya.com
tipple.in *.tipple.in *.www.tipple.in
*.old.you6ube.com *.shop.you6ube.com *.test.you6ube.com *.wildcard.you6ube.com you6ube.com *.you6ube.com