76/100 SECURITY SCORE

Certificate Information

Subject
CN=trong.bio
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 20, 2026
Valid Until
August 18, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:3C:3A:A3:AF:CD:B6:17:19:E5:3C:82:CE:F6:79:47:77:99:AE:71:33:66:E5:E4:8F:A4:9F:85:3D:91:18:8F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bedpla.net *.bedpla.net *.random.bedpla.net *.ww25.bedpla.net

Other domains in certificate

1b79h9.cc *.1b79h9.cc
brisbanecaregiver.com.au *.brisbanecaregiver.com.au *.ww25.brisbanecaregiver.com.au
*.backup.loanginza.com loanginza.com *.loanginza.com *.ww38.loanginza.com
memorialplaques.com.au *.memorialplaques.com.au
*.25.movies2.to *.go.movies2.to *.look.movies2.to movies2.to *.movies2.to *.watch.movies2.to *.ww25.movies2.to *.ww38.movies2.to
*.centralhealthplan.nationsbenifits.co nationsbenifits.co *.nationsbenifits.co *.sentaramedicaid.nationsbenifits.co *.ww25.nationsbenifits.co *.ww38.nationsbenifits.co
*.email.orangevfd.com orangevfd.com *.orangevfd.com *.ww25.orangevfd.com
*.animatsitgesbcn.perugia2019.eu *.enalcaccia.perugia2019.eu perugia2019.eu *.perugia2019.eu
*.english.redstatemobile.com redstatemobile.com *.redstatemobile.com
*.random.ryanflettmedia.com ryanflettmedia.com *.ryanflettmedia.com
*.hostmaster.schoolfilm.it schoolfilm.it *.schoolfilm.it
*.2194l.tipsads.top *.3nxyc.tipsads.top *.565d122c-811b-4946-9385-ac67165437b8.tipsads.top *.5jsd7.tipsads.top *.8f7793a2-88bd-418b-ba86-045a986b0d37.tipsads.top *.8joac.tipsads.top *.app.tipsads.top *.assets.tipsads.top *.ayfpk.tipsads.top *.backup.tipsads.top *.d.tipsads.top *.dashboard.tipsads.top *.demo.tipsads.top *.dev.tipsads.top *.dmnqqq2s8t.tipsads.top *.dwij7.tipsads.top *.fdy0p.tipsads.top *.fkyvmdmnqqq2s8t.tipsads.top *.hmrddb54zj.tipsads.top *.lbcp6.tipsads.top *.mail.tipsads.top *.ogynx3nxyc.tipsads.top *.q2s8t.tipsads.top *.qakt3.tipsads.top *.qdiek.tipsads.top *.ques8.tipsads.top *.rdjyfayfpk.tipsads.top tipsads.top *.tipsads.top *.web.tipsads.top *.www.tipsads.top *.xrqcg.tipsads.top *.y6iui.tipsads.top
*.controller.trong.bio *.kafka.trong.bio *.stage.trong.bio *.staging.trong.bio trong.bio *.trong.bio *.ww38.trong.bio
ubladi.com *.ubladi.com
xn--nagelablsung-cjb.de *.xn--nagelablsung-cjb.de