76/100 SECURITY SCORE

Certificate Information

Subject
CN=chainnavigation.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 22, 2026
Valid Until
July 21, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E4:CC:45:88:C9:20:39:30:60:57:AB:8C:D0:07:BD:51:C0:A1:CF:72:44:77:9E:4C:F9:6A:CD:47:44:4F:18:6C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
funnelmastermind.com *.funnelmastermind.com *.a.funnelmastermind.com *.ftp.funnelmastermind.com *.rd.funnelmastermind.com

Other domains in certificate

*.c781a321-e164-4207-a43c-dd27a38afd7f.chainnavigation.com chainnavigation.com *.chainnavigation.com
*.app.crackstreams.day crackstreams.day *.crackstreams.day *.d19f149a-ecd2-427d-9f29-275c60b514a7.crackstreams.day *.ing.crackstreams.day *.m.crackstreams.day *.sbs.crackstreams.day *.tv.crackstreams.day *.ww25.crackstreams.day *.ww38.crackstreams.day *.xswzyndl.crackstreams.day
deerpee.com *.deerpee.com *.ww25.deerpee.com *.ww38.deerpee.com
*.adsmanager.facebookm.com *.basicm.facebookm.com *.beta.facebookm.com *.c10r.facebookm.com *.chat.facebookm.com *.comwww.facebookm.com *.development.facebookm.com *.drehww.facebookm.com *.ebay.facebookm.com facebookm.com *.facebookm.com *.free.facebookm.com *.hk.facebookm.com *.iutnb.facebookm.com *.joomla.facebookm.com *.m.facebookm.com *.mail.facebookm.com *.market.facebookm.com *.mbasic.facebookm.com *.new.facebookm.com *.w.facebookm.com *.walpha.facebookm.com *.ww01.facebookm.com *.ww11.facebookm.com *.ww25.facebookm.com *.www.facebookm.com
*.api.getmissioninbox.co *.ba171af2-1a72-4127-afdf-22eab5c59ab9.getmissioninbox.co getmissioninbox.co *.getmissioninbox.co *.gwiuustaging.getmissioninbox.co *.staging.getmissioninbox.co
*.d.highborn.xyz *.grc2go.highborn.xyz highborn.xyz *.highborn.xyz *.m.highborn.xyz *.remote.highborn.xyz *.www.highborn.xyz
*.med.prolocofontenuova.com *.mx.prolocofontenuova.com prolocofontenuova.com *.prolocofontenuova.com *.ww16.prolocofontenuova.com
*.admin.sun1688.bet *.dev.sun1688.bet *.mx.sun1688.bet sun1688.bet *.sun1688.bet
*.bbs.tallahasseemassagesalon.com *.chat.tallahasseemassagesalon.com *.flow.tallahasseemassagesalon.com *.flowiseai.tallahasseemassagesalon.com *.imap2.tallahasseemassagesalon.com *.owa.tallahasseemassagesalon.com *.prod.tallahasseemassagesalon.com *.qa.tallahasseemassagesalon.com tallahasseemassagesalon.com *.tallahasseemassagesalon.com
*.m.tpqa.org tpqa.org *.tpqa.org
*.random.wuniji123.com *.sinaimg.wuniji123.com wuniji123.com *.wuniji123.com *.ww25.wuniji123.com