Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=jainism.life
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 18, 2025
Valid Until
March 18, 2026
35 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:35:92:72:2D:61:20:BE:17:90:7C:C8:B2:CE:E6:B2:45:E3:6E:7D:46:6A:70:90:D3:56:91:1C:73:3F:51:47
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
barbaradevil.com
*.barbaradevil.com
*.members.barbaradevil.com
*.random.barbaradevil.com
*.2vle5uk.basketballclinic.be
*.aetrezn.basketballclinic.be
basketballclinic.be
*.basketballclinic.be
*.cmjfxx.basketballclinic.be
*.hcueko9.basketballclinic.be
*.ijjxa04.basketballclinic.be
*.jro80ad.basketballclinic.be
*.nipdeur.basketballclinic.be
*.oedchtd.basketballclinic.be
*.rmdqdlo.basketballclinic.be
*.sdpkefs.basketballclinic.be
*.sneenjv.basketballclinic.be
*.topokxt.basketballclinic.be
*.vrzohne.basketballclinic.be
*.wdic8vf.basketballclinic.be
*.wet54nx.basketballclinic.be
*.wsa9pwu.basketballclinic.be
*.xpputen.basketballclinic.be
*.xu2wtt4.basketballclinic.be
brainpop.co
*.brainpop.co
*.portal.brainpop.co
*.app.cennetbahcemiz.com
cennetbahcemiz.com
*.cennetbahcemiz.com
*.dhbt.cennetbahcemiz.com
*.dinibilgiler.cennetbahcemiz.com
*.evimiz.cennetbahcemiz.com
*.hakimlik.cennetbahcemiz.com
*.kredi.cennetbahcemiz.com
*.rqbolcpanel.cennetbahcemiz.com
*.sorucevap.cennetbahcemiz.com
dreiwunsche.at
*.dreiwunsche.at
furkanlarinsaat.com
*.furkanlarinsaat.com
*.ww25.furkanlarinsaat.com
*.ww38.furkanlarinsaat.com
*.api.jainism.life
*.app.jainism.life
*.blog.jainism.life
*.dev.jainism.life
*.ftp.jainism.life
jainism.life
*.jainism.life
*.m.jainism.life
*.mail.jainism.life
*.members.jainism.life
*.shop.jainism.life
*.test.jainism.life
joguesorte.xyz
*.joguesorte.xyz
*.sitemaps.joguesorte.xyz
*.app.lr60.xyz
*.d.lr60.xyz
*.gzgoz9hh6nmfpg5y.lr60.xyz
lr60.xyz
*.lr60.xyz
*.m1.lr60.xyz
*.ml.lr60.xyz
*.u3xs735wqk4kuuhu.lr60.xyz
*.ww01.lr60.xyz
*.ww25.lr60.xyz
*.ww38.lr60.xyz
*.www.lr60.xyz
*.xyz.lr60.xyz
*.pay.pixelone.studio
pixelone.studio
*.pixelone.studio
*.www.pixelone.studio
*.godaddy.pokeroge.net
pokeroge.net
*.pokeroge.net
*.ww25.pokeroge.net
racingworld.com.au
*.racingworld.com.au
*.orweb.techsquadline.com
techsquadline.com
*.techsquadline.com
*.web.techsquadline.com
ultra-33.online
*.ultra-33.online
wheel-of-luck.com
*.wheel-of-luck.com
Other domains in certificate