91/100 SECURITY SCORE

Certificate Information

Subject
CN=code-paper.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 03, 2026
Valid Until
September 01, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
ED:C8:82:36:25:2E:28:3E:5B:7C:E2:F3:F6:96:5E:9A:13:D1:E5:94:80:44:43:94:6A:AB:F7:04:DD:A3:B4:76
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(), midi=(), sync-xhr=(); +6 more
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
code-paper.com *.code-paper.com *.es.code-paper.com *.fi.code-paper.com *.hi.code-paper.com *.is.code-paper.com *.it.code-paper.com *.ko.code-paper.com *.pl.code-paper.com *.ro.code-paper.com *.ru.code-paper.com *.sk.code-paper.com *.th.code-paper.com *.tr.code-paper.com *.zh.code-paper.com

Other domains in certificate

5280highlandsranch.com *.5280highlandsranch.com *.preview.5280highlandsranch.com
auge.au *.auge.au
cryptoconference.com.au *.cryptoconference.com.au
*.04415580-c362-42c7-878c-9bc8562c7d19.deepbulb.com *.75a19ccc-4069-479b-8cf5-ed17923c52a1.deepbulb.com *.assets.deepbulb.com *.crypto.deepbulb.com deepbulb.com *.deepbulb.com *.demo.deepbulb.com *.dev.deepbulb.com *.hostmaster.deepbulb.com *.uat.deepbulb.com *.www.deepbulb.com
earthboundbeauty.com *.earthboundbeauty.com *.www.earthboundbeauty.com
ganesha.tv *.ganesha.tv *.primary.ganesha.tv
ginoscafeanditalianrestaurant.com *.ginoscafeanditalianrestaurant.com *.ww38.ginoscafeanditalianrestaurant.com
hjuno.com *.hjuno.com *.img1-fg.hjuno.com *.random.hjuno.com
imoilien.de *.imoilien.de
*.api.insanejobs.com insanejobs.com *.insanejobs.com *.mx.insanejobs.com *.webmail.insanejobs.com *.www.insanejobs.com
ipadresseanzeigen.de *.ipadresseanzeigen.de
pentesters.com.au *.pentesters.com.au *.sandbox.pentesters.com.au *.store.pentesters.com.au
pequerecicladores.com *.pequerecicladores.com
*.admin.qhotels.it *.api.qhotels.it qhotels.it *.qhotels.it
the-banyan-tree.co.uk *.the-banyan-tree.co.uk *.ww25.the-banyan-tree.co.uk *.ww38.the-banyan-tree.co.uk
*.hostmaster.tiphotline.it tiphotline.it *.tiphotline.it
*.google.tubid.com *.mp3.tubid.com *.new.tubid.com tubid.com *.tubid.com *.ww11.tubid.com *.ww25.tubid.com *.xxx.tubid.com
*.subscribe.typtolearn.com typtolearn.com *.typtolearn.com *.ww.typtolearn.com
willettsbbqandburgers.co.uk *.willettsbbqandburgers.co.uk
younglesbians.com *.younglesbians.com