79/100 SECURITY SCORE

Certificate Information

Subject
CN=telegramfy.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026 77 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:59:25:67:35:9B:98:76:0F:E3:0C:1E:A7:14:F7:E9:95:3A:A5:39:46:25:6F:FC:C5:36:66:10:6F:B8:0F:D8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
shadowplayground.com *.shadowplayground.com

Other domains in certificate

10508.run *.10508.run
1122bet.fun *.1122bet.fun
113836.me *.113836.me
118373.co *.118373.co
12531894.top *.12531894.top
sb639.live *.sb639.live
sb8983.shop *.sb8983.shop
sdysh.app *.sdysh.app
selectlinesoftwareneo.com *.selectlinesoftwareneo.com
sell-watches-885883343.click *.sell-watches-885883343.click
sheincloth.shop *.sheincloth.shop
shfgrbfd.com *.shfgrbfd.com
shungyo-shunsaimuraoka.com *.shungyo-shunsaimuraoka.com
singha82.pro *.singha82.pro
sixteen-candles.net *.sixteen-candles.net
sknthestudio.com *.sknthestudio.com
sleechy.com *.sleechy.com
smalljumping.top *.smalljumping.top
soclnkzz.top *.soclnkzz.top
spatial60s.com *.spatial60s.com
spatialflowers.com *.spatialflowers.com
spatialinvoice.com *.spatialinvoice.com
spatialmanuals.com *.spatialmanuals.com
spatialpray.com *.spatialpray.com
spatialrap.com *.spatialrap.com
spatialxray.com *.spatialxray.com
splendspirit.com *.splendspirit.com
streetmatch.it *.streetmatch.it
sunbustechsdnbhd.com *.sunbustechsdnbhd.com
surajsensei.com *.surajsensei.com
swanmelody.com *.swanmelody.com
synonimy.net *.synonimy.net
taixxiuonline.com *.taixxiuonline.com
tamilchristianresources.com *.tamilchristianresources.com
tanksphone.com *.tanksphone.com
teammslsocial.com *.teammslsocial.com
tech-24.cc *.tech-24.cc
technal.org *.technal.org
technicheplatform.live *.technicheplatform.live
telegramfy.com *.telegramfy.com
tenisonmexico.com *.tenisonmexico.com
tfkqunai.xyz *.tfkqunai.xyz
thefreedomeframework.net *.thefreedomeframework.net
thegameofthegenerals.com *.thegameofthegenerals.com