76/100 SECURITY SCORE

Certificate Information

Subject
CN=40101.one
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026 60 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
32:A5:3E:7E:CC:15:CC:B3:BE:7B:7A:31:F7:68:C5:91:46:57:A0:88:6C:F4:43:48:A4:61:77:27:D8:F3:19:9A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
frankey-s.com *.frankey-s.com *.app.frankey-s.com *.m.frankey-s.com *.mail.frankey-s.com *.mail1.frankey-s.com *.mail2.frankey-s.com *.staging.frankey-s.com *.uat.frankey-s.com *.vpn.frankey-s.com

Other domains in certificate

40101.one *.40101.one
43344.vip *.43344.vip
450415.xyz *.450415.xyz
451533.xyz *.451533.xyz
452246.xyz *.452246.xyz
57761.loan *.57761.loan
95337.one *.95337.one
adventpanettone.com *.adventpanettone.com
artdisplaylive.digital *.artdisplaylive.digital
braisel.com *.braisel.com *.stream.braisel.com
electrician-courses-90345.sbs *.electrician-courses-90345.sbs
emr-for-private-practice.click *.emr-for-private-practice.click
epiphanies.org *.epiphanies.org *.m.epiphanies.org *.these.epiphanies.org
exploregrowthacquisitions.co *.exploregrowthacquisitions.co
findinginterdependencepr.co *.findinginterdependencepr.co
gazprofits.com *.gazprofits.com
getrivlyadvertise.co *.getrivlyadvertise.co
gronvaline.cfd *.gronvaline.cfd
honestgardening.xyz *.honestgardening.xyz
kickstartyourvacation.xyz *.kickstartyourvacation.xyz
lionheartaivc.com *.lionheartaivc.com
luxury-villas-570113266.click *.luxury-villas-570113266.click
m38w.cyou *.m38w.cyou
*.neb.njmylgc.cn njmylgc.cn *.njmylgc.cn *.stats.njmylgc.cn *.test.njmylgc.cn *.web.njmylgc.cn
nnefy.loan *.nnefy.loan
pultly.com *.pultly.com
usepirkx.co *.usepirkx.co
vavada555-casino.site *.vavada555-casino.site
vertexodyssey139.shop *.vertexodyssey139.shop
visualsbysarr.com *.visualsbysarr.com
vitaliteverte.club *.vitaliteverte.club
waste-collection5-sk-mb11.click *.waste-collection5-sk-mb11.click
www188729.com *.www188729.com
www2017qp.com *.www2017qp.com
www55298c.com *.www55298c.com
zmtest.site *.zmtest.site