76/100 SECURITY SCORE

Certificate Information

Subject
CN=haichuan.net
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 14, 2026
Valid Until
May 15, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
67:EC:31:38:68:9D:D2:3C:B9:FA:B9:94:F3:71:D0:7E:83:D2:AB:42:28:17:7C:C7:4A:07:BC:C9:76:A6:26:E2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

87 domains
cathurbate.com *.cathurbate.com *.random.cathurbate.com

Other domains in certificate

atslastminute.de *.atslastminute.de *.random.atslastminute.de *.reisen.atslastminute.de
blihr.org *.blihr.org
cartalks.com *.cartalks.com *.random.cartalks.com *.ww38.cartalks.com
cartooning.com.au *.cartooning.com.au *.ww38.cartooning.com.au
cherryblossom-garden.com *.cherryblossom-garden.com *.gallery.cherryblossom-garden.com *.hostmaster.cherryblossom-garden.com *.mail.cherryblossom-garden.com *.news.cherryblossom-garden.com *.ns.cherryblossom-garden.com *.www.cherryblossom-garden.com
comicsfromhell.net *.comicsfromhell.net
computerrepair.au *.computerrepair.au *.random.computerrepair.au
ecathlon.de *.ecathlon.de
gamesales.com.au *.gamesales.com.au
gardenfurniture.com.au *.gardenfurniture.com.au *.random.gardenfurniture.com.au
haichuan.net *.haichuan.net
hausofentertainment.com.au *.hausofentertainment.com.au
hyundaisa.com *.hyundaisa.com
kensingtom.com *.kensingtom.com
nico.au *.nico.au
*.assets.niiiws.com *.m.niiiws.com niiiws.com *.niiiws.com
photobuckit.com *.photobuckit.com
platoon.com.au *.platoon.com.au
rdloan.com *.rdloan.com *.ww38.rdloan.com
*.random.resumex.com resumex.com *.resumex.com *.ww38.resumex.com
silvertreetakeaway.co.uk *.silvertreetakeaway.co.uk
slimmingpill.com.au *.slimmingpill.com.au *.ww38.slimmingpill.com.au
*.random.sportspizza.us sportspizza.us *.sportspizza.us
*.random.stockholmhockey.com stockholmhockey.com *.stockholmhockey.com *.ww38.stockholmhockey.com
sylvie.com.au *.sylvie.com.au
*.random.tentporn.com tentporn.com *.tentporn.com *.ww38.tentporn.com
unitedoutfits.com *.unitedoutfits.com
webshotes.com *.webshotes.com
werek.nl *.werek.nl
zapro.es *.zapro.es