Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=championcugateway.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 01, 2026
Valid Until
July 30, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:64:42:24:44:B5:A9:8B:E7:02:1F:74:8C:00:2D:DC:2E:C6:C8:47:C9:13:1B:D2:0F:9A:0D:D5:AE:9F:19:9D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
vavadap12.com
*.vavadap12.com
*.cloud1.vavadap12.com
championcugateway.com
*.championcugateway.com
charityhdtv.com
*.charityhdtv.com
cillaorganics.com
*.cillaorganics.com
clarityjetset.xyz
*.clarityjetset.xyz
climateinaction.org
*.climateinaction.org
diyperformance.xyz
*.diyperformance.xyz
eqkfe.gdn
*.eqkfe.gdn
exchangess-app.com
*.exchangess-app.com
executiveassessments.com
*.executiveassessments.com
explorebuckeyebusiness.com
*.explorebuckeyebusiness.com
exploreyooz.company
*.exploreyooz.company
fia2a.com
*.fia2a.com
fitnessconnected.club
*.fitnessconnected.club
fitnessvisionaries.club
*.fitnessvisionaries.club
goodlordsestates.com
*.goodlordsestates.com
gossipjourney.xyz
*.gossipjourney.xyz
hillsalex.com
*.hillsalex.com
hsoplmail.com
*.hsoplmail.com
ikordo.com
*.ikordo.com
inhaletheraw.com
*.inhaletheraw.com
joatlinks.com
*.joatlinks.com
joyfulessentialoils.com
*.joyfulessentialoils.com
jrvi.io
*.jrvi.io
junkremovaluaefree.com
*.junkremovaluaefree.com
kairobleu.com
*.kairobleu.com
lemmegummies.org
*.lemmegummies.org
meetb2bfundingcrew.com
*.meetb2bfundingcrew.com
nominex.cc
*.nominex.cc
optimumtravelchoice.live
*.optimumtravelchoice.live
outreairrr.com
*.outreairrr.com
phonecasekenya.com
*.phonecasekenya.com
pirojpurnews24.com
*.pirojpurnews24.com
providencebusinesscapital.com
*.providencebusinesscapital.com
purpleprocurement.com
*.purpleprocurement.com
qarnvia.com
*.qarnvia.com
rhetoric.in
*.rhetoric.in
richwayschools.com
*.richwayschools.com
smke.co.in
*.smke.co.in
southboro.com
*.southboro.com
thelawnguy.info
*.thelawnguy.info
xn--estny.com
*.xn--estny.com
ziphionchrysanthusfoundation.com
*.ziphionchrysanthusfoundation.com
zippstordigital.com
*.zippstordigital.com
Other domains in certificate