76/100 SECURITY SCORE

Certificate Information

Subject
CN=luxiomaksimal.click
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 13, 2026
Valid Until
July 12, 2026 46 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:B7:71:DC:90:E1:86:F8:42:4E:4B:6E:29:F0:CC:00:89:09:EA:18:1F:F2:E1:71:BF:99:BE:61:F9:7E:90:10
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
repackgames.site *.repackgames.site

Other domains in certificate

1800medicare.xyz *.1800medicare.xyz *.aws.1800medicare.xyz *.laravel.1800medicare.xyz
andmoreheslth.com *.andmoreheslth.com
*.admin.diuct.cc diuct.cc *.diuct.cc *.insight.diuct.cc *.sitemaps.diuct.cc *.ww25.diuct.cc *.ww38.diuct.cc *.wwww.diuct.cc
*.atenalive.foriapps.com *.com.foriapps.com *.elriorestaurant.foriapps.com foriapps.com *.foriapps.com *.info.foriapps.com *.institutofranco.foriapps.com *.notifruitex.foriapps.com *.plataforma.foriapps.com *.web.foriapps.com
*.comune.gmyil.com *.comw25.gmyil.com *.dakbrahim267.gmyil.com *.gmail.gmyil.com gmyil.com *.gmyil.com *.im.gmyil.com *.wsmtp.gmyil.com *.ww25.gmyil.com
innocent-girls.top *.innocent-girls.top *.ww25.innocent-girls.top
invitationshop.com *.invitationshop.com *.m.invitationshop.com
*.access.jazli.com *.admin.jazli.com *.cloud.jazli.com *.cloudvpn.jazli.com *.connect.jazli.com *.drvpn.jazli.com *.exchange.jazli.com *.hostmaster.jazli.com jazli.com *.jazli.com *.wiki.jazli.com *.ww16.jazli.com *.ww17.jazli.com *.ww25.jazli.com
kootenaypetcare.com *.kootenaypetcare.com
luxiomaksimal.click *.luxiomaksimal.click
morango777br.com *.morango777br.com
nalogroup.bet *.nalogroup.bet
*.m.parlier.net parlier.net *.parlier.net *.ww16.parlier.net *.ww38.parlier.net *.ww5.parlier.net
personaluniversestore.com *.personaluniversestore.com *.ww25.personaluniversestore.com
relazione.tokyo *.relazione.tokyo
*.account.valicfinancial.com *.app.valicfinancial.com valicfinancial.com *.valicfinancial.com
*.admin.watchgurad.com *.agent.watchgurad.com *.cloud.watchgurad.com *.secure.watchgurad.com *.software.watchgurad.com watchgurad.com *.watchgurad.com
*.random.webglsample.org webglsample.org *.webglsample.org *.ww25.webglsample.org