76/100 SECURITY SCORE

Certificate Information

Subject
CN=orcamonitor.info
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 09, 2026
Valid Until
April 09, 2026 44 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C5:E7:BB:E8:6B:C7:C9:57:DA:C7:EA:EB:8F:17:6E:84:4F:42:5B:B7:D2:DA:B7:A2:1E:EF:D5:70:07:8E:36:9D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
softwaveit.co *.softwaveit.co *.gruels.softwaveit.co *.issued.softwaveit.co *.meum.softwaveit.co *.sclera.softwaveit.co *.softwaveit.softwaveit.co *.tydwnl.softwaveit.co *.utick.softwaveit.co

Other domains in certificate

27fa0ea7fa.com *.27fa0ea7fa.com
animeblix.xyz *.animeblix.xyz
beauty-korea.pro *.beauty-korea.pro
bestonlinemortgagelenders788652.icu *.bestonlinemortgagelenders788652.icu
*.app.brazileconomiza.online brazileconomiza.online *.brazileconomiza.online *.dev.brazileconomiza.online *.ebmail.brazileconomiza.online *.seguro.brazileconomiza.online *.www.brazileconomiza.online
cash-for-scrap-cars.com *.cash-for-scrap-cars.com
ciaim-optimism.app *.ciaim-optimism.app
coldwellbaker.com *.coldwellbaker.com *.dash.coldwellbaker.com *.owa.coldwellbaker.com *.ww25.coldwellbaker.com *.www.coldwellbaker.com
*.assets.daddychaser.com *.assets2.daddychaser.com *.authsmtp.daddychaser.com *.autodiscover.daddychaser.com *.autos.daddychaser.com daddychaser.com *.daddychaser.com *.dir.daddychaser.com *.es.daddychaser.com *.jc.daddychaser.com *.lolo.daddychaser.com *.m.daddychaser.com *.mailx.daddychaser.com *.mx.daddychaser.com *.northamerica.daddychaser.com *.old.daddychaser.com *.radio.daddychaser.com *.random.daddychaser.com *.rootservers.daddychaser.com *.saratov.daddychaser.com *.simple.daddychaser.com *.sms.daddychaser.com *.tempest.daddychaser.com *.travel.daddychaser.com *.wiki.daddychaser.com *.ww25.daddychaser.com *.ww38.daddychaser.com *.www.daddychaser.com
escolaebv.com.br *.escolaebv.com.br
hallnark.com *.hallnark.com *.xn--www-hn0a.hallnark.com
inn24news.com *.inn24news.com
keenwave360.com *.keenwave360.com
omahbokep.online *.omahbokep.online *.ww38.omahbokep.online
orcamonitor.info *.orcamonitor.info *.ww25.orcamonitor.info
*.sitemap.thebestsocialmediafollowers.online *.sitemaps.thebestsocialmediafollowers.online thebestsocialmediafollowers.online *.thebestsocialmediafollowers.online *.yw1ast2ygmpqugzm.thebestsocialmediafollowers.online
*.burrow.thehealthyherb.store *.leanbellyjuice.thehealthyherb.store *.redboost.thehealthyherb.store *.sumatratonic.thehealthyherb.store thehealthyherb.store *.thehealthyherb.store
xn--songbersetzer-zob.de *.xn--songbersetzer-zob.de