76/100 SECURITY SCORE

Certificate Information

Subject
CN=spacepaste.cc
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 13, 2026
Valid Until
April 13, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8A:30:9E:F4:03:ED:C2:20:95:85:F7:A0:50:5F:D3:3E:69:D8:70:8E:CF:6D:6E:10:A5:3C:F6:EE:9D:D8:A0:6E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
babadan.com *.babadan.com *.anyconnect.babadan.com *.india.babadan.com *.mobileconnect.babadan.com *.new.babadan.com *.random.babadan.com *.rbywzgto.babadan.com *.remoto.babadan.com *.rustore.babadan.com *.secureconnect.babadan.com *.studentsvpn.babadan.com *.tv.babadan.com *.ww.babadan.com *.ww1.babadan.com *.www.babadan.com

Other domains in certificate

app-games-racincbi.xyz *.app-games-racincbi.xyz *.bc73f6f0-e393-480a-87a0-07c038b34449.app-games-racincbi.xyz *.dev.app-games-racincbi.xyz *.secure.app-games-racincbi.xyz *.ww25.app-games-racincbi.xyz
*.amcargo.areomexico.com *.amfcaturacion.areomexico.com areomexico.com *.areomexico.com *.ca.areomexico.com *.citrix.areomexico.com *.external.areomexico.com *.lms.areomexico.com *.mail1.areomexico.com *.owa.areomexico.com *.portalfacturacioncargo.areomexico.com *.smtp.areomexico.com *.ww38.areomexico.com *.www.areomexico.com
encontrala.com *.encontrala.com *.new.encontrala.com
*.hpttps.jobleza.com jobleza.com *.jobleza.com
*.cdn.jupicraft.net *.discord.jupicraft.net *.drp.jupicraft.net *.fb.jupicraft.net *.ftp.jupicraft.net jupicraft.net *.jupicraft.net *.play.jupicraft.net *.purchase.jupicraft.net *.random.jupicraft.net *.store.jupicraft.net *.voice.jupicraft.net *.www.jupicraft.net
*.com.myezyacces.com myezyacces.com *.myezyacces.com *.pulmonawymc.myezyacces.com *.southern-gastto.myezyacces.com *.texasback.myezyacces.com
one789.ltd *.one789.ltd *.www.one789.ltd
*.api.pib-uob.com *.c74c31b3-64ed-4ddf-a3c9-802422146a4a.pib-uob.com *.dev.pib-uob.com *.ildcard.pib-uob.com pib-uob.com *.pib-uob.com *.random.pib-uob.com *.vpn.pib-uob.com *.wildcard.pib-uob.com *.www.pib-uob.com
proveedore.com *.proveedore.com *.random.proveedore.com *.wildcard.proveedore.com
qhc.au *.qhc.au *.wildcard.qhc.au
*.ead.rumahstore14.click rumahstore14.click *.rumahstore14.click *.webdisk.rumahstore14.click
*.link.spacepaste.cc spacepaste.cc *.spacepaste.cc *.ww25.spacepaste.cc