Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=gossipsparksight.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 19, 2026
Valid Until
May 20, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
69:91:8C:F1:F2:B9:0A:B4:13:F9:63:05:27:44:C6:88:AF:9C:94:D6:2C:93:BA:89:7D:3B:32:EA:D8:9B:5E:1D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
saludweb.com *.saludweb.com *.api.saludweb.com *.app.saludweb.com *.assets.saludweb.com *.desktop.saludweb.com *.m.saludweb.com *.portal.saludweb.com *.ra.saludweb.com *.rdp.saludweb.com *.rds.saludweb.com *.remoto.saludweb.com *.sitemaps.saludweb.com *.ssl.saludweb.com *.ts.saludweb.com *.vdi.saludweb.com *.vpn.saludweb.com *.vpn1.saludweb.com *.vpnssl.saludweb.com *.ww16.saludweb.com *.ww25.saludweb.com

Other domains in certificate

crypto-sec.com *.crypto-sec.com *.m.crypto-sec.com
*.cg4o5.d3a0yhc.top d3a0yhc.top *.d3a0yhc.top *.he00g.d3a0yhc.top *.jyikv.d3a0yhc.top *.mp7tf.d3a0yhc.top *.s28s9.d3a0yhc.top *.v6j6e.d3a0yhc.top
*.cdn.designsicrave.online designsicrave.online *.designsicrave.online
directsearch.it *.directsearch.it *.webmail.directsearch.it
*.bbs.dunkerque.it dunkerque.it *.dunkerque.it
foya88-hoki.com *.foya88-hoki.com *.www.foya88-hoki.com
gossipsparksight.xyz *.gossipsparksight.xyz *.rczhl.gossipsparksight.xyz
hirschdealer-usa.com *.hirschdealer-usa.com *.ww25.hirschdealer-usa.com *.ww38.hirschdealer-usa.com
*.hostmaster.psicologiaonline.it psicologiaonline.it *.psicologiaonline.it
pushmarketing.com.au *.pushmarketing.com.au
receh88-hoki.com *.receh88-hoki.com *.www.receh88-hoki.com
*.hostmaster.sgu.uk sgu.uk *.sgu.uk *.www.sgu.uk
smm-intrtrend.xyz *.smm-intrtrend.xyz *.v6j6e.smm-intrtrend.xyz
*.duatop.tip68.club *.random.tip68.club tip68.club *.tip68.club *.web.tip68.club *.ww25.tip68.club *.ww38.tip68.club
*.api.tokuno.com *.dev.tokuno.com *.mail.tokuno.com *.template.tokuno.com tokuno.com *.tokuno.com *.ww11.tokuno.com *.ww25.tokuno.com
*.cpcalendars.ukrestaurant.club *.cpcontacts.ukrestaurant.club *.sitemaps.ukrestaurant.club ukrestaurant.club *.ukrestaurant.club *.webmail.ukrestaurant.club *.ww25.ukrestaurant.club *.ww38.ukrestaurant.club