Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=dreamare.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 27, 2026
Valid Until
August 25, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:A8:68:34:97:A0:45:81:B0:87:42:2B:DB:D2:93:C6:21:85:51:B5:3E:31:F4:C8:25:FC:1E:F2:4A:49:94:74
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
onchainperson.com *.onchainperson.com *.api.onchainperson.com *.git.onchainperson.com *.vpn.onchainperson.com *.www.onchainperson.com

Other domains in certificate

bargainballon.com *.bargainballon.com *.ww25.bargainballon.com
dreamare.com *.dreamare.com
*.1.markepromopuls.com *.12.markepromopuls.com *.7.markepromopuls.com *.admin.markepromopuls.com *.app.markepromopuls.com *.backend.markepromopuls.com *.beta.markepromopuls.com *.dash.markepromopuls.com *.dashboard.markepromopuls.com *.dev.markepromopuls.com *.docs.markepromopuls.com *.gitlab.markepromopuls.com *.hr49je8un5b6jay9.markepromopuls.com *.il.markepromopuls.com *.jenkins.markepromopuls.com markepromopuls.com *.markepromopuls.com *.mta-sts.markepromopuls.com *.sitemap.markepromopuls.com *.stage.markepromopuls.com *.test.markepromopuls.com *.testing.markepromopuls.com *.ww12.markepromopuls.com *.ww7.markepromopuls.com *.ww99.markepromopuls.com *.www.markepromopuls.com
*.1d817.mealplans.xyz *.1yme1.mealplans.xyz *.2l6wm.mealplans.xyz *.96c54.mealplans.xyz *.api.mealplans.xyz *.assets.mealplans.xyz *.cc2mm.mealplans.xyz *.demo.mealplans.xyz *.j2zfz.mealplans.xyz *.l2aa8.mealplans.xyz *.m.mealplans.xyz mealplans.xyz *.mealplans.xyz *.nemln.mealplans.xyz *.ques8.mealplans.xyz *.random.mealplans.xyz *.suyfqwebmail.mealplans.xyz *.tpxa3.mealplans.xyz *.v3ywp.mealplans.xyz *.webmail.mealplans.xyz *.www.mealplans.xyz
net1.net.br *.net1.net.br *.random.net1.net.br
*.9t9zh4.stateoutings.info *.admin.stateoutings.info *.api.stateoutings.info *.app.stateoutings.info *.backup.stateoutings.info *.dev.stateoutings.info *.fc534a1b-7588-4135-ac3a-43523943c562.stateoutings.info *.members.stateoutings.info *.staging.stateoutings.info stateoutings.info *.stateoutings.info *.test.stateoutings.info *.uat.stateoutings.info
*.cloud.wyete.com *.forums.wyete.com *.rd.wyete.com *.remote.wyete.com *.www.wyete.com wyete.com *.wyete.com
*.com.xuanthu.com *.connect.xuanthu.com *.mail5.xuanthu.com *.rdweb.xuanthu.com *.server1.xuanthu.com *.webmail.xuanthu.com xuanthu.com *.xuanthu.com