79/100 SECURITY SCORE

Certificate Information

Subject
CN=filmorium.online
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 29, 2026
Valid Until
April 29, 2026 73 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:82:37:78:2D:76:7A:DA:D2:B0:5A:9A:08:F7:DA:17:25:0F:6B:06:B4:4C:30:5E:E6:FF:69:44:B6:71:EA:FD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
neemainternational.com *.neemainternational.com

Other domains in certificate

dresslikeafghan.com *.dresslikeafghan.com
egretonthesound.com *.egretonthesound.com
*.b.filmorium.online *.c.filmorium.online *.d.filmorium.online *.e.filmorium.online *.f.filmorium.online filmorium.online *.filmorium.online *.g.filmorium.online *.h.filmorium.online *.j.filmorium.online
firstnightsandwich.com *.firstnightsandwich.com
floridaitservice.com *.floridaitservice.com
galleriesguadalajara.com *.galleriesguadalajara.com
industrial-warehousing-239246115.click *.industrial-warehousing-239246115.click
neuralrag.com *.neuralrag.com
paydayloansusaccb.com *.paydayloansusaccb.com
pinasmexicanrestaurant.com *.pinasmexicanrestaurant.com
plinkoexplore.com *.plinkoexplore.com
proofsapp.com *.proofsapp.com
restaurantcustomerretention.top *.restaurantcustomerretention.top
robotmelon.com *.robotmelon.com
ru-tour.com *.ru-tour.com
safesu.com *.safesu.com
scramblerz.com *.scramblerz.com
semperfi.cc *.semperfi.cc
shellshockerspace.com *.shellshockerspace.com
shoutfeeds.com *.shoutfeeds.com
sirryangiggs.com *.sirryangiggs.com
sknlocal.com *.sknlocal.com
smartfonescoin.com *.smartfonescoin.com
stage-4-kidney-cancer.click *.stage-4-kidney-cancer.click
stopmeatwatching.com *.stopmeatwatching.com
strategies-for-business-and-tech.click *.strategies-for-business-and-tech.click
suburbiasalon.com *.suburbiasalon.com
suppliervalley.com *.suppliervalley.com
suprememob.com *.suprememob.com
theposstcity.com *.theposstcity.com
travelscompany.com *.travelscompany.com
ufaplay.net *.ufaplay.net
ug300-amp-vision.com *.ug300-amp-vision.com
ulusern.com *.ulusern.com
unitedeat.com *.unitedeat.com
utaraonline.net *.utaraonline.net
waterviewllc.com *.waterviewllc.com
wealthaihub.com *.wealthaihub.com
weveglifeinfood.com *.weveglifeinfood.com
wiltonmanorscourtyardcafe.com *.wiltonmanorscourtyardcafe.com