Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=getdonorspring.xyz
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 05, 2026
Valid Until
September 03, 2026 70 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:A3:1E:7C:37:9C:A1:F4:0D:6A:AA:6B:AD:17:C2:B0:52:3F:4E:70:B9:41:13:D8:25:08:16:6B:D5:41:35:00
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
smartfundflow.click *.smartfundflow.click

Other domains in certificate

getdonorspring.xyz *.getdonorspring.xyz
giuntis.com *.giuntis.com
gleamhaveny.info *.gleamhaveny.info
glynnstorm.com *.glynnstorm.com
gossipepiphany.live *.gossipepiphany.live
growthgridtoolkit.co *.growthgridtoolkit.co
gtacwxgtacwxx.com *.gtacwxgtacwxx.com
haosx.net *.haosx.net
heavenchristianministries.com *.heavenchristianministries.com
hisiliconsakura.com *.hisiliconsakura.com
hsunderground.com *.hsunderground.com
ikane.org *.ikane.org
indiaiw.click *.indiaiw.click
infocrafter.info *.infocrafter.info
itjian.shop *.itjian.shop
janet44.my *.janet44.my
jds-liquidations.com *.jds-liquidations.com
jobs.icu *.jobs.icu
jxtz44.vip *.jxtz44.vip
k02jkai4.xyz *.k02jkai4.xyz
kavagie.com *.kavagie.com
labet555.one *.labet555.one
lanterna777.com *.lanterna777.com
linearsea.com *.linearsea.com
logiviewx.info *.logiviewx.info
marineridge.pro *.marineridge.pro
maximizedatacyplatform.info *.maximizedatacyplatform.info
md869.xyz *.md869.xyz
memoirghostwritinghq.digital *.memoirghostwritinghq.digital
mhpcm.gdn *.mhpcm.gdn
mightyoutreachministries.com *.mightyoutreachministries.com
pptube.club *.pptube.club
professionaltravelpath.live *.professionaltravelpath.live
qyejr.work *.qyejr.work
redatrixlab.com *.redatrixlab.com
sean02.my *.sean02.my
securepage.org *.securepage.org
simplesdiy.com *.simplesdiy.com
sky77slot.shop *.sky77slot.shop
slantedmgmt.com *.slantedmgmt.com
slashekknj.world *.slashekknj.world
solaire.live *.solaire.live
soliv.site *.soliv.site
solovela.com *.solovela.com