Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=popcornvod.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 11, 2026
Valid Until
April 11, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:7E:7E:CB:09:DA:11:32:FB:2C:C3:DF:C6:BF:46:C5:85:9C:58:D4:3B:27:20:23:D0:44:84:DF:24:F3:05:27
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
vinyl.es
*.vinyl.es
aroodawakening.com
*.aroodawakening.com
*.ww.aroodawakening.com
bellingengolfclub.com.au
*.bellingengolfclub.com.au
*.webmail.bellingengolfclub.com.au
daraja.com
*.daraja.com
*.safaricom.daraja.com
*.ww16.daraja.com
*.ww25.daraja.com
*.com.equitorialtrustbank.com
equitorialtrustbank.com
*.equitorialtrustbank.com
*.ww25.equitorialtrustbank.com
havenbeachmotel.com
*.havenbeachmotel.com
*.ww38.havenbeachmotel.com
junique.store
*.junique.store
*.ww38.junique.store
kookmutjes.com
*.kookmutjes.com
*.preview.kookmutjes.com
lastcastbaitandtackle.com.au
*.lastcastbaitandtackle.com.au
*.ww16.lastcastbaitandtackle.com.au
*.ww25.lastcastbaitandtackle.com.au
*.ww38.lastcastbaitandtackle.com.au
linkt.bio
*.linkt.bio
*.dev.mega777only.xyz
*.dolibarr.mega777only.xyz
mega777only.xyz
*.mega777only.xyz
*.ww25.mega777only.xyz
*.7eed2971-2b13-4565-8c39-1e316626c45b.odds-portal.com
*.admin.odds-portal.com
*.analytic.odds-portal.com
*.api.odds-portal.com
*.app.odds-portal.com
*.backend.odds-portal.com
*.backup.odds-portal.com
*.beta.odds-portal.com
*.blog.odds-portal.com
*.crm.odds-portal.com
*.demo.odds-portal.com
*.explore.odds-portal.com
*.forum.odds-portal.com
*.forums.odds-portal.com
*.help.odds-portal.com
*.hostmaster.odds-portal.com
*.imap.odds-portal.com
*.impact.odds-portal.com
*.intranet.odds-portal.com
*.m.odds-portal.com
*.new.odds-portal.com
odds-portal.com
*.odds-portal.com
*.old.odds-portal.com
*.portal.odds-portal.com
*.remote.odds-portal.com
*.shop.odds-portal.com
*.store.odds-portal.com
*.temp.odds-portal.com
*.test.odds-portal.com
*.wiki.odds-portal.com
*.ww25.odds-portal.com
*.ww38.odds-portal.com
*.www.odds-portal.com
*.dddd.omve.net
omve.net
*.omve.net
*.ww38.omve.net
*.cfwww.popcornvod.com
*.domwww.popcornvod.com
popcornvod.com
*.popcornvod.com
*.topwww.popcornvod.com
*.ws.popcornvod.com
*.wss.popcornvod.com
*.ww38.popcornvod.com
*.www.popcornvod.com
prubenefitscenter.co
*.prubenefitscenter.co
*.ww38.prubenefitscenter.co
senzopt.co
*.senzopt.co
Other domains in certificate