76/100 SECURITY SCORE

Certificate Information

Subject
CN=ledgepay.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026 63 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
46:C6:9A:67:F1:7E:D2:61:80:20:12:E2:06:C9:13:2A:F1:02:B5:78:C0:44:46:FB:FB:D5:E6:24:71:F1:38:79
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
stonalgpt.com *.stonalgpt.com *.rds.stonalgpt.com *.rdweb.stonalgpt.com

Other domains in certificate

acne-treatment-nl-639p4.shop *.acne-treatment-nl-639p4.shop
leadgroup.company *.leadgroup.company
leadstore.co *.leadstore.co
learn-guide.info *.learn-guide.info
ledgepay.com *.ledgepay.com
linkbet100gampangmenang.com *.linkbet100gampangmenang.com
linkbet100terpercaya.org *.linkbet100terpercaya.org
malleinize.com *.malleinize.com
manufacturing-machines-w2.click *.manufacturing-machines-w2.click
mindrecomposition.com *.mindrecomposition.com
*.4c8cadd4-9eb3-42c9-956f-24e06e7fd942.mostbetdownload.net *.api.mostbetdownload.net *.app.mostbetdownload.net *.assets.mostbetdownload.net *.fhixiu.mostbetdownload.net mostbetdownload.net *.mostbetdownload.net
mysequencecommerce.com *.mysequencecommerce.com
redoca.pro *.redoca.pro
restar.co *.restar.co
reverin.pro *.reverin.pro
rietecho.com *.rietecho.com
s2wmediamail.com *.s2wmediamail.com
seogantagency.com *.seogantagency.com
shelvora.sbs *.shelvora.sbs
solarpulse.co *.solarpulse.co
supertruckcards.us *.supertruckcards.us
sxcrpus400.vip *.sxcrpus400.vip
symphysodactylia.com *.symphysodactylia.com
tronexina.com *.tronexina.com
ufo777wede.com *.ufo777wede.com
ugdewaciy.com *.ugdewaciy.com
urbandev.company *.urbandev.company
vlkan.online *.vlkan.online
vmanq1552.com *.vmanq1552.com
what3words-team.com *.what3words-team.com
whatthreewordssite.com *.whatthreewordssite.com
*.rd.xn--gtvs97b.com *.rdweb.xn--gtvs97b.com *.remote.xn--gtvs97b.com xn--gtvs97b.com *.xn--gtvs97b.com
yleth.vip *.yleth.vip
yourvelostics.com *.yourvelostics.com
ypqpqg.one *.ypqpqg.one
yyh2f3.cyou *.yyh2f3.cyou
zdravnitca.com *.zdravnitca.com
zs6025.com *.zs6025.com
zuruzorb.com *.zuruzorb.com