76/100 SECURITY SCORE

Certificate Information

Subject
CN=braz.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 23, 2026
Valid Until
July 22, 2026 71 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B6:4B:C5:51:68:8E:83:2C:C6:21:E0:D2:BE:BB:AD:FB:46:E2:39:53:A0:2F:E9:E5:25:A2:4E:A3:9B:3C:2D:B9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
personalizedweb.com *.personalizedweb.com *.hostmaster.personalizedweb.com

Other domains in certificate

awxm.com *.awxm.com
*.analigia.braz.com *.andrea.braz.com *.barbie.braz.com braz.com *.braz.com *.critina.braz.com *.di.braz.com *.iad-03.braz.com *.ind.braz.com *.paulo.braz.com *.pop.braz.com *.samridhi.braz.com *.stepsister.braz.com *.ww20.braz.com *.x.braz.com *.xinli.braz.com *.xnxx.braz.com *.xx.braz.com *.xxx.braz.com *.xxxxx.braz.com *.zz.braz.com
buildinglogistics.com *.buildinglogistics.com *.cpanel.buildinglogistics.com
daisi.au *.daisi.au *.random.daisi.au *.ww38.daisi.au
hubplusx-us.online *.hubplusx-us.online
mapple123.com *.mapple123.com *.ww16.mapple123.com
*.3b1cc053-9c78-4849-8213-49f1c3944783.nimbroq.com *.5e609934-4f72-4b9c-8436-b912210e686e.nimbroq.com *.a.nimbroq.com *.a100269a-6731-4094-a68b-124c188ad521.nimbroq.com *.admin.nimbroq.com *.api.nimbroq.com *.app.nimbroq.com *.assets.nimbroq.com *.cloud.nimbroq.com *.demo.nimbroq.com *.dev.nimbroq.com *.intranet.nimbroq.com nimbroq.com *.nimbroq.com *.rd.nimbroq.com *.vpn.nimbroq.com
*.advogado.pjemais.com.br *.ba-oferta-plano-builder.pjemais.com.br *.curso.pjemais.com.br *.direitoejustica.pjemais.com.br *.gratis-builderall.pjemais.com.br *.ns1.pjemais.com.br *.ns2.pjemais.com.br *.ns3.pjemais.com.br *.office.pjemais.com.br *.ombjoaopessoa.pjemais.com.br *.painel.pjemais.com.br pjemais.com.br *.pjemais.com.br *.plano-builder.pjemais.com.br *.preprod.pjemais.com.br *.ww38.pjemais.com.br
pushbike.com.au *.pushbike.com.au
solvitemediation.nl *.solvitemediation.nl
*.admin.thecollegiateblog.org *.cpanel.thecollegiateblog.org *.m.thecollegiateblog.org *.mail.thecollegiateblog.org *.rlwfusecure.thecollegiateblog.org *.sitemap.thecollegiateblog.org thecollegiateblog.org *.thecollegiateblog.org *.vpnssl.thecollegiateblog.org *.webdisk.thecollegiateblog.org *.webmail.thecollegiateblog.org *.ww1.thecollegiateblog.org
xstars.agency *.xstars.agency
yourhomestyle.it *.yourhomestyle.it