76/100 SECURITY SCORE

Certificate Information

Subject
CN=nvcasinouk.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026 73 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:26:F7:37:0A:F6:0E:53:66:8E:07:85:15:74:85:5E:9B:37:23:6D:8B:07:71:A3:7E:82:DB:0B:F1:68:7B:1F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
nvcasinouk.org *.nvcasinouk.org *.45a400fe-a758-4ee9-8005-c52ac128b21e.nvcasinouk.org *.65961e92-3b73-4a66-b37f-14c268c66113.nvcasinouk.org *.a.nvcasinouk.org *.admin.nvcasinouk.org *.api.nvcasinouk.org *.app.nvcasinouk.org *.assets.nvcasinouk.org *.demo.nvcasinouk.org *.dev.nvcasinouk.org *.mail.nvcasinouk.org *.mailgw.nvcasinouk.org *.mx0.nvcasinouk.org *.root.nvcasinouk.org *.shop.nvcasinouk.org *.test.nvcasinouk.org *.webmail.nvcasinouk.org

Other domains in certificate

bharos.net *.bharos.net *.cpcontacts.bharos.net
*.backup.dentalinsurancemichigan.com dentalinsurancemichigan.com *.dentalinsurancemichigan.com *.hostmaster.dentalinsurancemichigan.com *.shop.dentalinsurancemichigan.com *.store.dentalinsurancemichigan.com *.temp.dentalinsurancemichigan.com
*.admin.doromod.bet *.api.doromod.bet *.app.doromod.bet *.assets.doromod.bet *.brcboadmin.doromod.bet *.c6b6b326-e535-4384-9cbe-c17fb70f34cd.doromod.bet *.demo.doromod.bet *.dev.doromod.bet doromod.bet *.doromod.bet *.test.doromod.bet *.wfpkbmkbnjassets.doromod.bet
*.0797mp.dzbc.org *.cloudgod250.dzbc.org *.desktopwallpaper.dzbc.org dzbc.org *.dzbc.org *.high-speed.dzbc.org *.junglenet.dzbc.org *.random.dzbc.org
*.admin.lode88.monster *.agent.lode88.monster *.api.lode88.monster *.backend.lode88.monster *.demo.lode88.monster *.dev.lode88.monster lode88.monster *.lode88.monster
raptoreventsafe.com *.raptoreventsafe.com *.sitemap.raptoreventsafe.com *.www.raptoreventsafe.com
*.5d156801-9ca1-4870-a1eb-2416c60dcbe4.timesharebot.com *.a.timesharebot.com *.acceptatie.timesharebot.com *.admin.timesharebot.com *.api.timesharebot.com *.app.timesharebot.com *.assets.timesharebot.com *.backup.timesharebot.com *.beta.timesharebot.com *.dashboard.timesharebot.com *.demo.timesharebot.com *.dev.timesharebot.com *.mail.timesharebot.com *.mailer.timesharebot.com *.marketing.timesharebot.com *.members.timesharebot.com *.mx.timesharebot.com *.nextcloud.timesharebot.com *.staging.timesharebot.com *.stg.timesharebot.com *.test.timesharebot.com timesharebot.com *.timesharebot.com *.web.timesharebot.com *.www.timesharebot.com
*.a.zs2297.com *.app.zs2297.com *.vpn.zs2297.com zs2297.com *.zs2297.com