76/100 SECURITY SCORE

Certificate Information

Subject
CN=freefun.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 10, 2026
Valid Until
May 11, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:D4:3C:35:C3:2D:E2:B4:C3:25:D9:50:2E:0D:D8:D5:E6:11:22:73:BD:B7:A1:90:68:66:E5:6C:89:2E:A1:61
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

86 domains
gangaware.com *.gangaware.com *.gateway.gangaware.com *.office.gangaware.com *.remoteaccess.gangaware.com *.vpn.gangaware.com *.vpn1.gangaware.com *.vpn2.gangaware.com *.webvpn.gangaware.com *.wiki.gangaware.com *.ww16.gangaware.com

Other domains in certificate

arangam.com *.arangam.com *.dddd.arangam.com *.ssl.arangam.com
*.a.avonselfstorage.com *.admin.avonselfstorage.com avonselfstorage.com *.avonselfstorage.com *.catalog.avonselfstorage.com *.crm.avonselfstorage.com *.demo.avonselfstorage.com *.dl.avonselfstorage.com *.download.avonselfstorage.com *.edu.avonselfstorage.com *.forum.avonselfstorage.com *.forums.avonselfstorage.com *.images.avonselfstorage.com *.mail.avonselfstorage.com *.members.avonselfstorage.com *.mobile.avonselfstorage.com *.projects.avonselfstorage.com *.social.avonselfstorage.com *.us.avonselfstorage.com *.v2.avonselfstorage.com *.wiki.avonselfstorage.com *.ww16.avonselfstorage.com
capsforpets.org *.capsforpets.org *.wildcard.capsforpets.org
debrarobinsons.com *.debrarobinsons.com *.localhost.debrarobinsons.com *.www.debrarobinsons.com
finely.xyz *.finely.xyz *.wildcard.finely.xyz *.ww16.finely.xyz
freefun.online *.freefun.online *.psn.freefun.online *.www.freefun.online
internbio.org *.internbio.org *.www.internbio.org
mayfieldbridge.co.uk *.mayfieldbridge.co.uk
mdate.vip *.mdate.vip *.random.mdate.vip *.wildcard.mdate.vip
*.46be64ed-1bb8-4f34-a72a-4d03db8325e4.mo55o.com *.app.mo55o.com *.assets.mo55o.com *.demo.mo55o.com *.dev.mo55o.com *.fnidxtest.mo55o.com *.guaxard.mo55o.com *.img.mo55o.com *.mailer.mo55o.com mo55o.com *.mo55o.com *.nwesbtesting.mo55o.com *.rd.mo55o.com *.rds.mo55o.com *.shop.mo55o.com *.uat.mo55o.com
ourcar-uae.com *.ourcar-uae.com *.ww25.ourcar-uae.com
*.shop.uhcproider.com uhcproider.com *.uhcproider.com
*.kwid9.xn--5hqx9e52gopi49k.xyz xn--5hqx9e52gopi49k.xyz *.xn--5hqx9e52gopi49k.xyz