76/100 SECURITY SCORE

Certificate Information

Subject
CN=futurext.cfd
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 31, 2026
Valid Until
May 01, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
70:C3:00:3C:72:80:DD:B4:ED:E0:4C:9C:0D:60:8B:04:31:14:37:95:46:25:80:83:58:90:CC:B4:D6:42:2D:58
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
pooner.com *.pooner.com *.access.pooner.com *.hostmaster.pooner.com

Other domains in certificate

320tymp3.com *.320tymp3.com
avizoon.com *.avizoon.com *.blogs.avizoon.com *.ww17.avizoon.com
baufinanzerung.de *.baufinanzerung.de
*.aap.bhi.life *.apni.bhi.life bhi.life *.bhi.life *.gov.bhi.life *.jitni.bhi.life *.ki.bhi.life *.log.bhi.life *.mera.bhi.life *.meri.bhi.life
bronav.com *.bronav.com *.comwww.bronav.com *.gmai.bronav.com
*.24-hour-surgery-costs.futurext.cfd futurext.cfd *.futurext.cfd *.michelamilillo-instagram.futurext.cfd *.radford-apa-help.futurext.cfd *.top-5-large-cap-mutual-funds-2021.futurext.cfd
holdiayinn.co.uk *.holdiayinn.co.uk
japanische-frauen.de *.japanische-frauen.de
*.autoconfig.kirsteen.com kirsteen.com *.kirsteen.com *.store.kirsteen.com *.vpn.kirsteen.com *.webvpn.kirsteen.com
kugelgewehre.de *.kugelgewehre.de
lockeneisen.de *.lockeneisen.de
*.en.luxuryhop.com luxuryhop.com *.luxuryhop.com *.ns.luxuryhop.com *.random.luxuryhop.com *.svn.luxuryhop.com
*.bf5732fa-1970-4438-953f-129c2a1ba4cc.monobahis493.com monobahis493.com *.monobahis493.com
octanereport.com *.octanereport.com *.ww1.octanereport.com
plummer-vinson-syndrom.de *.plummer-vinson-syndrom.de
serumkrankheit.de *.serumkrankheit.de
smartstaff.com.au *.smartstaff.com.au
sulcus-centralis.de *.sulcus-centralis.de
*.random.super-house-chinese.com super-house-chinese.com *.super-house-chinese.com
*.ak1.thescoreview.com thescoreview.com *.thescoreview.com *.tnvn1.thescoreview.com *.ww38.thescoreview.com
trainedplumberslimited.com *.trainedplumberslimited.com
ucluidai.xyz *.ucluidai.xyz
*.accounts.voicetotext.io *.clerk.voicetotext.io *.mail.voicetotext.io voicetotext.io *.voicetotext.io
websitedevelopershyderabad.in *.websitedevelopershyderabad.in
wohnmobilaufkleber.de *.wohnmobilaufkleber.de
xn--wwwexistenzgrnder-f3b.de *.xn--wwwexistenzgrnder-f3b.de