76/100 SECURITY SCORE

Certificate Information

Subject
CN=jainism.life
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 18, 2025
Valid Until
March 18, 2026 35 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:35:92:72:2D:61:20:BE:17:90:7C:C8:B2:CE:E6:B2:45:E3:6E:7D:46:6A:70:90:D3:56:91:1C:73:3F:51:47
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
barbaradevil.com *.barbaradevil.com *.members.barbaradevil.com *.random.barbaradevil.com

Other domains in certificate

*.2vle5uk.basketballclinic.be *.aetrezn.basketballclinic.be basketballclinic.be *.basketballclinic.be *.cmjfxx.basketballclinic.be *.hcueko9.basketballclinic.be *.ijjxa04.basketballclinic.be *.jro80ad.basketballclinic.be *.nipdeur.basketballclinic.be *.oedchtd.basketballclinic.be *.rmdqdlo.basketballclinic.be *.sdpkefs.basketballclinic.be *.sneenjv.basketballclinic.be *.topokxt.basketballclinic.be *.vrzohne.basketballclinic.be *.wdic8vf.basketballclinic.be *.wet54nx.basketballclinic.be *.wsa9pwu.basketballclinic.be *.xpputen.basketballclinic.be *.xu2wtt4.basketballclinic.be
brainpop.co *.brainpop.co *.portal.brainpop.co
*.app.cennetbahcemiz.com cennetbahcemiz.com *.cennetbahcemiz.com *.dhbt.cennetbahcemiz.com *.dinibilgiler.cennetbahcemiz.com *.evimiz.cennetbahcemiz.com *.hakimlik.cennetbahcemiz.com *.kredi.cennetbahcemiz.com *.rqbolcpanel.cennetbahcemiz.com *.sorucevap.cennetbahcemiz.com
dreiwunsche.at *.dreiwunsche.at
furkanlarinsaat.com *.furkanlarinsaat.com *.ww25.furkanlarinsaat.com *.ww38.furkanlarinsaat.com
*.api.jainism.life *.app.jainism.life *.blog.jainism.life *.dev.jainism.life *.ftp.jainism.life jainism.life *.jainism.life *.m.jainism.life *.mail.jainism.life *.members.jainism.life *.shop.jainism.life *.test.jainism.life
joguesorte.xyz *.joguesorte.xyz *.sitemaps.joguesorte.xyz
*.app.lr60.xyz *.d.lr60.xyz *.gzgoz9hh6nmfpg5y.lr60.xyz lr60.xyz *.lr60.xyz *.m1.lr60.xyz *.ml.lr60.xyz *.u3xs735wqk4kuuhu.lr60.xyz *.ww01.lr60.xyz *.ww25.lr60.xyz *.ww38.lr60.xyz *.www.lr60.xyz *.xyz.lr60.xyz
*.pay.pixelone.studio pixelone.studio *.pixelone.studio *.www.pixelone.studio
*.godaddy.pokeroge.net pokeroge.net *.pokeroge.net *.ww25.pokeroge.net
racingworld.com.au *.racingworld.com.au
*.orweb.techsquadline.com techsquadline.com *.techsquadline.com *.web.techsquadline.com
ultra-33.online *.ultra-33.online
wheel-of-luck.com *.wheel-of-luck.com