Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=miniwars.store
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 11, 2025
Valid Until
March 11, 2026
31 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
17:59:25:A8:A4:A7:14:07:D4:A0:1A:AD:F6:EE:BE:36:D1:7A:9F:14:67:8E:E1:87:E1:C3:0F:3B:55:3A:79:75
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sseseemamazon.com
*.sseseemamazon.com
*.ww25.sseseemamazon.com
*.ww38.sseseemamazon.com
adminmilenio.site
*.adminmilenio.site
*.media.adminmilenio.site
*.1b90fa92-79b9-474b-87b7-71e5cf95191f.bankofamericafoundation.com
bankofamericafoundation.com
*.bankofamericafoundation.com
*.faq.bankofamericafoundation.com
*.blog.buyotc.com
buyotc.com
*.buyotc.com
*.cloud.buyotc.com
*.m.buyotc.com
*.mvideo.buyotc.com
*.owa.buyotc.com
*.sitemaps.buyotc.com
*.smtp.buyotc.com
*.wiki.buyotc.com
*.a.coctolib.de
coctolib.de
*.coctolib.de
givedrop.site
*.givedrop.site
*.ww38.givedrop.site
hrcmfcathens.com
*.hrcmfcathens.com
*.ad.hul24.de
hul24.de
*.hul24.de
inupdatenews.com
*.inupdatenews.com
inwell741.xyz
*.inwell741.xyz
*.random.inwell741.xyz
*.ww16.inwell741.xyz
*.ww25.inwell741.xyz
issaspambitch.com
*.issaspambitch.com
italianmatterslearn.com
*.italianmatterslearn.com
koupelny.com
*.koupelny.com
*.sitemap.koupelny.com
*.sitemaps.koupelny.com
*.vpn.koupelny.com
kuugar.com
*.kuugar.com
marketon8thstreet.com
*.marketon8thstreet.com
miniwars.store
*.miniwars.store
*.ww38.miniwars.store
*.bxxzdw.mlsnkz5.quest
*.cws.mlsnkz5.quest
*.eaachb.mlsnkz5.quest
*.ell.mlsnkz5.quest
*.hiotem.mlsnkz5.quest
*.lou.mlsnkz5.quest
*.lxubej.mlsnkz5.quest
mlsnkz5.quest
*.mlsnkz5.quest
*.ssd.mlsnkz5.quest
*.wxbwrv.mlsnkz5.quest
*.zlesaz.mlsnkz5.quest
pornokomiksy.com
*.pornokomiksy.com
*.delishologi.slidingpatiodoors.co.uk
*.delishrecipes.slidingpatiodoors.co.uk
*.doorstyle.slidingpatiodoors.co.uk
*.espana.slidingpatiodoors.co.uk
*.espanadecor.slidingpatiodoors.co.uk
*.espanamakeup.slidingpatiodoors.co.uk
*.eye-makeup-master.slidingpatiodoors.co.uk
*.frdecor.slidingpatiodoors.co.uk
*.italy.slidingpatiodoors.co.uk
*.itdecor.slidingpatiodoors.co.uk
*.makeup.slidingpatiodoors.co.uk
*.rus.slidingpatiodoors.co.uk
*.rusdecor.slidingpatiodoors.co.uk
*.rusgarnic.slidingpatiodoors.co.uk
slidingpatiodoors.co.uk
*.slidingpatiodoors.co.uk
*.uk.slidingpatiodoors.co.uk
*.ukrain.slidingpatiodoors.co.uk
vi-group.pro
*.vi-group.pro
*.ww25.vi-group.pro
Other domains in certificate