76/100 SECURITY SCORE

Certificate Information

Subject
CN=bwm.bet
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026 78 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
29:D5:B2:78:C8:B5:2F:F0:1E:27:05:D5:CE:58:35:7B:32:E9:BE:D1:A3:A1:7F:46:52:F9:77:76:69:34:5E:1C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
internetservice.in *.internetservice.in *.m.internetservice.in *.random.internetservice.in

Other domains in certificate

2x5c.cc *.2x5c.cc
34092.mobi *.34092.mobi
75646.pro *.75646.pro
799171.lol *.799171.lol
905174.lol *.905174.lol
bhw38.icu *.bhw38.icu
bizanikshomesltd.com *.bizanikshomesltd.com *.test.bizanikshomesltd.com
*.32.bwm.bet bwm.bet *.bwm.bet *.m.bwm.bet
bykme.gdn *.bykme.gdn
clearshipcoureir.com *.clearshipcoureir.com
cucho.es *.cucho.es
dam3rap.com *.dam3rap.com
dfacpz19.com *.dfacpz19.com
gruposetaimoveis.com.br *.gruposetaimoveis.com.br
gstnepal.com *.gstnepal.com
hairhighlighting.com *.hairhighlighting.com
hearth.baby *.hearth.baby
hiddenleafresort.com *.hiddenleafresort.com
hotelyelona.info *.hotelyelona.info
invoke.cc *.invoke.cc
irina.media *.irina.media
kaffekapslen.in *.kaffekapslen.in *.www.kaffekapslen.in
*.32.kwin68club2.bet kwin68club2.bet *.kwin68club2.bet
minorworkpermit.com *.minorworkpermit.com
nixub.auction *.nixub.auction
nudism-family.life *.nudism-family.life *.random.nudism-family.life
oshbq.auction *.oshbq.auction
plsat.com *.plsat.com *.www.plsat.com
poohmascalendar.com *.poohmascalendar.com *.ww38.poohmascalendar.com
popstarsai.com *.popstarsai.com
postcolonialauthors.digital *.postcolonialauthors.digital *.yf6e8r.postcolonialauthors.digital
postcolonialfreedom.digital *.postcolonialfreedom.digital
*.hostmaster.roomwithaview.it roomwithaview.it *.roomwithaview.it
*.32.sein.live sein.live *.sein.live
*.autodiscover.takethebaton.com *.cpanel.takethebaton.com *.m.takethebaton.com *.mail.takethebaton.com takethebaton.com *.takethebaton.com *.webmail.takethebaton.com