76/100 SECURITY SCORE

Certificate Information

Subject
CN=luxury-items.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
96:48:4B:32:E3:2A:BF:E0:49:66:5D:2C:39:4E:D5:79:92:3C:F9:06:0B:4C:87:B5:61:86:23:8D:57:8F:84:E2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
drushel.com *.drushel.com *.vpn2.drushel.com

Other domains in certificate

big.net.au *.big.net.au *.kingaroy.big.net.au *.mary.big.net.au *.smtp.big.net.au *.sun.big.net.au
camilalimajp.com *.camilalimajp.com *.ww38.camilalimajp.com
rajasthannews.co.in *.rajasthannews.co.in *.wildcard.rajasthannews.co.in
flixmovies.co *.flixmovies.co *.hostmaster.flixmovies.co *.www.flixmovies.co
ganjing-world.com *.ganjing-world.com *.random.ganjing-world.com *.remote.ganjing-world.com
guanjiu.com *.guanjiu.com *.info.guanjiu.com *.noc.guanjiu.com *.ww25.guanjiu.com
*.admin.kakao.media kakao.media *.kakao.media *.resolver.kakao.media *.webmail.kakao.media
lmjusedcarauto-salesllc.com *.lmjusedcarauto-salesllc.com *.ww16.lmjusedcarauto-salesllc.com *.ww17.lmjusedcarauto-salesllc.com *.ww38.lmjusedcarauto-salesllc.com
*.bg.luxury-items.org *.cdn.luxury-items.org *.cs.luxury-items.org *.da.luxury-items.org *.de.luxury-items.org *.el.luxury-items.org *.es.luxury-items.org *.fi.luxury-items.org *.fr.luxury-items.org *.hi.luxury-items.org *.hr.luxury-items.org *.hu.luxury-items.org *.it.luxury-items.org *.lt.luxury-items.org luxury-items.org *.luxury-items.org *.lv.luxury-items.org *.nl.luxury-items.org *.no.luxury-items.org *.pl.luxury-items.org *.sk.luxury-items.org *.sl.luxury-items.org *.sv.luxury-items.org *.tr.luxury-items.org *.uk.luxury-items.org
*.demo.makeupshop.biz makeupshop.biz *.makeupshop.biz *.ww38.makeupshop.biz *.www.makeupshop.biz
*.amtrak.netbenifits.com *.com.netbenifits.com *.fidelity.netbenifits.com *.fsa.netbenifits.com netbenifits.com *.netbenifits.com *.wwww.netbenifits.com
*.loja.thelegion.com thelegion.com *.thelegion.com *.vpn.thelegion.com
*.es.videzy.com *.netwww.videzy.com *.nl.videzy.com videzy.com *.videzy.com *.ww.videzy.com *.ww25.videzy.com
*.ww38.xumo.live xumo.live *.xumo.live