76/100 SECURITY SCORE

Certificate Information

Subject
CN=beppan.info
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 12, 2026
Valid Until
May 13, 2026 85 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
26:37:06:B6:5E:B0:0F:0D:0F:F6:BD:13:72:78:76:C8:AD:62:FD:16:CC:C6:09:98:41:26:5D:A3:F2:6E:6F:57
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
backstories.com *.backstories.com *.demo.backstories.com *.hostmaster.backstories.com *.m.backstories.com *.mail.backstories.com *.sitemap.backstories.com *.sitemaps.backstories.com

Other domains in certificate

663373.locker *.663373.locker *.archive.663373.locker *.blog.663373.locker *.demo.663373.locker *.files.663373.locker *.hostmaster.663373.locker *.hr.663373.locker *.kkuuxblog.663373.locker *.live.663373.locker *.public.663373.locker *.sharepoint.663373.locker *.test.663373.locker
beppan.info *.beppan.info
*.ebmail.fraaragaroniiodealbites.cyou fraaragaroniiodealbites.cyou *.fraaragaroniiodealbites.cyou *.ftp.fraaragaroniiodealbites.cyou *.kggxpstaging.fraaragaroniiodealbites.cyou *.marketing.fraaragaroniiodealbites.cyou *.test.fraaragaroniiodealbites.cyou *.webmail.fraaragaroniiodealbites.cyou *.whm.fraaragaroniiodealbites.cyou
henryschei.com *.henryschei.com *.ns1.henryschei.com *.wildcard.henryschei.com *.ww38.henryschei.com
*.admin.offertehotellowcost.it *.api.offertehotellowcost.it offertehotellowcost.it *.offertehotellowcost.it
*.admin.sshvip.us *.autodiscover.sshvip.us *.blog.sshvip.us *.cpanel.sshvip.us *.cpcalendars.sshvip.us *.cpcontacts.sshvip.us *.mail.sshvip.us *.peewewebdisk.sshvip.us *.random.sshvip.us *.sg-vip.sshvip.us sshvip.us *.sshvip.us *.top.sshvip.us *.vip-ca.sshvip.us *.vip-id.sshvip.us *.vip-sg.sshvip.us *.vip-sg1.sshvip.us *.vip-sg2.sshvip.us *.vip-sg3.sshvip.us *.vip-us.sshvip.us *.vip-us1.sshvip.us *.vpn.sshvip.us *.webdisk.sshvip.us *.webmail.sshvip.us *.ww1.sshvip.us *.ww2.sshvip.us *.ww25.sshvip.us *.ww38.sshvip.us *.www.sshvip.us
*.admin.uaesomaticspiritualtherapy.com *.api.uaesomaticspiritualtherapy.com *.app.uaesomaticspiritualtherapy.com *.assets.uaesomaticspiritualtherapy.com *.demo.uaesomaticspiritualtherapy.com *.dev.uaesomaticspiritualtherapy.com *.metrics.uaesomaticspiritualtherapy.com *.mgbdgapp.uaesomaticspiritualtherapy.com *.rd.uaesomaticspiritualtherapy.com *.rds.uaesomaticspiritualtherapy.com *.test.uaesomaticspiritualtherapy.com uaesomaticspiritualtherapy.com *.uaesomaticspiritualtherapy.com *.vpn.uaesomaticspiritualtherapy.com
*.app.yonk.io *.control.yonk.io *.ww38.yonk.io yonk.io *.yonk.io