76/100 SECURITY SCORE

Certificate Information

Subject
CN=bluemoonsoftware.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 24, 2025
Valid Until
March 24, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7B:55:C1:92:7F:60:AC:17:50:52:9E:89:62:0C:CF:1E:04:43:43:2B:B8:3C:A9:F3:AE:09:35:2A:7C:51:7F:69
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
ner-sitedesign.biz *.ner-sitedesign.biz *.chava.ner-sitedesign.biz *.generaltest.ner-sitedesign.biz *.generaltest1.ner-sitedesign.biz *.graphics-shop.ner-sitedesign.biz *.graphicsstore.ner-sitedesign.biz *.kemort.ner-sitedesign.biz *.msyof.ner-sitedesign.biz *.ofra-biz-ex.ner-sitedesign.biz *.ofra-biz.ner-sitedesign.biz *.ort.ner-sitedesign.biz *.pb.ner-sitedesign.biz *.studio-valdman.ner-sitedesign.biz *.x1.ner-sitedesign.biz

Other domains in certificate

bluemoonbrewjingcompany.com *.bluemoonbrewjingcompany.com *.ww38.bluemoonbrewjingcompany.com
bluemoonsoftware.com *.bluemoonsoftware.com *.ww16.bluemoonsoftware.com *.ww25.bluemoonsoftware.com
*.be.late.today *.cam.late.today *.come.late.today *.get.late.today *.ko.late.today late.today *.late.today *.little.late.today *.mail.late.today *.mpotse.late.today *.ngibe.late.today *.open.late.today *.real.late.today *.sleep.late.today *.sp.late.today *.to.late.today *.too.late.today *.up.late.today *.was.late.today *.woking.late.today *.work.late.today *.working.late.today *.wprkee.late.today *.you.late.today
longfeng85.cc *.longfeng85.cc *.xn--1oq328dmin57s24e51co8c4vb.longfeng85.cc *.xn--22s30pyqpjwc73ti2vkxdtrk.longfeng85.cc *.xn--23qy6ac3s6itxzfqs4b9vmoxm.longfeng85.cc *.xn--55qw92bx1al1a23odu2chbdu7u.longfeng85.cc *.xn--5csx0b05fr6bn7f795dfhp2yw.longfeng85.cc *.xn--5qr27ly8t60gxohen2bgie89i.longfeng85.cc *.xn--7yq546djhdt9fsxby9cr70csr3a.longfeng85.cc *.xn--94tv1dgvno1i3kljj3aukg4nf.longfeng85.cc *.xn--9ht07iy83ap9d9xcc95ci2a9v.longfeng85.cc *.xn--chts4a33xe3ks5pr9igpbozf.longfeng85.cc *.xn--cvtoi21qetfssxd2elxfl2i.longfeng85.cc *.xn--f6t9nhfx9d4wgb37dftnoit.longfeng85.cc *.xn--h8uu7nwoc2uto4et00a1gpjpi.longfeng85.cc *.xn--mdr744fvjdyogi0du1svtmxse.longfeng85.cc *.xn--rdtr6m9tir6qbsbb2izunr07b.longfeng85.cc *.xn--rvrxa08h049gpjbx9dgwm82f.longfeng85.cc *.xn--w6tn5dp6iuh510co8x7y0aklk.longfeng85.cc *.xn--y0t6im9a7yhcvfwsgkucvs6k.longfeng85.cc
*.27h4h1x31arlrmhqae88hjnhk.mscmsit.xyz *.2me4io04uy7mxktfwznk3bpfo.mscmsit.xyz *.37mtceq31roiudprjzyv0452r.mscmsit.xyz *.3g.mscmsit.xyz *.app.mscmsit.xyz *.backend.mscmsit.xyz *.cdn.mscmsit.xyz *.com.mscmsit.xyz *.cpcontacts.mscmsit.xyz *.d.mscmsit.xyz *.data.mscmsit.xyz *.magento.mscmsit.xyz *.media.mscmsit.xyz mscmsit.xyz *.mscmsit.xyz *.s.mscmsit.xyz *.schedule.mscmsit.xyz *.site.mscmsit.xyz *.superset.mscmsit.xyz *.town.mscmsit.xyz *.usps.mscmsit.xyz *.ww17.mscmsit.xyz *.www1.mscmsit.xyz