76/100 SECURITY SCORE

Certificate Information

Subject
CN=mypersonalhygiene.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 17, 2026
Valid Until
July 16, 2026 49 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:AD:94:11:62:1A:26:2E:A1:6F:BC:FD:FB:45:71:70:15:DF:DE:78:A8:D2:D6:0D:52:B3:0B:17:9D:FA:67:2E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

86 domains
chemtrails.it *.chemtrails.it *.accounts.chemtrails.it *.admin.chemtrails.it *.api.chemtrails.it *.app.chemtrails.it *.dev.chemtrails.it *.forecast.chemtrails.it *.hostmaster.chemtrails.it *.metric.chemtrails.it *.report.chemtrails.it *.reporting.chemtrails.it *.research.chemtrails.it *.sso.chemtrails.it *.staging.chemtrails.it *.superset.chemtrails.it *.www.chemtrails.it

Other domains in certificate

at-home.bet *.at-home.bet *.bi.at-home.bet
charterjets.com.au *.charterjets.com.au *.ww38.charterjets.com.au
games-world.life *.games-world.life *.singapore.games-world.life *.top.games-world.life
*.2201a463-f220-4e65-b2ac-19e18a76836d.gunbet.app *.4063c0fe-f96b-4c62-8e5e-8ae22b34f57b.gunbet.app *.admin.gunbet.app *.api.gunbet.app *.app.gunbet.app *.assets.gunbet.app *.c4d63014-96ce-4057-8f0d-66f7559ffdcd.gunbet.app *.de1182f4-8306-48bd-b263-3d69bfa1d119.gunbet.app *.demo.gunbet.app *.dev.gunbet.app *.en.gunbet.app gunbet.app *.gunbet.app *.hostmaster.gunbet.app *.mail.gunbet.app *.members.gunbet.app *.mvnbnapi.gunbet.app *.panel.gunbet.app *.rustore.gunbet.app *.test.gunbet.app *.traefik.gunbet.app
*.admin.heatingmaintenancecostop.space heatingmaintenancecostop.space *.heatingmaintenancecostop.space *.insight.heatingmaintenancecostop.space *.staging.heatingmaintenancecostop.space *.ugyftstaging.heatingmaintenancecostop.space
hindustansanitarystores.com *.hindustansanitarystores.com *.ww25.hindustansanitarystores.com
*.cms.hopestreet.co.uk hopestreet.co.uk *.hopestreet.co.uk *.random.hopestreet.co.uk *.stage.hopestreet.co.uk
*.admin.ipin.it *.api.ipin.it *.bi.ipin.it ipin.it *.ipin.it *.sav.ipin.it *.superset.ipin.it
*.intranet.judyhayes.com judyhayes.com *.judyhayes.com *.shop.judyhayes.com
*.coconutoilandacne.mypersonalhygiene.com mypersonalhygiene.com *.mypersonalhygiene.com *.ww38.mypersonalhygiene.com
*.entourage.s-h-v.org s-h-v.org *.s-h-v.org
*.shop.sporttv.live sporttv.live *.sporttv.live *.staging.sporttv.live *.test.sporttv.live *.ww25.sporttv.live