Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=galaxydeal.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 10, 2026
Valid Until
May 11, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
89:FE:5A:09:C9:D9:B7:FE:F3:6E:D7:ED:C8:61:D7:0F:81:5D:F0:03:0E:42:01:31:D1:74:0A:0C:9B:94:A6:71
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
meicuo.com *.meicuo.com *.sitemaps.meicuo.com *.store.meicuo.com *.webmail.meicuo.com *.wiki.meicuo.com *.ww16.meicuo.com

Other domains in certificate

aetnasudenthealth.com *.aetnasudenthealth.com *.tclnivpn.aetnasudenthealth.com
*.api.atanos.com atanos.com *.atanos.com *.blog.atanos.com *.crm.atanos.com *.mail.atanos.com *.ww38.atanos.com
*.admin.billigakasse.com *.api.billigakasse.com billigakasse.com *.billigakasse.com *.boutique.billigakasse.com *.demo.billigakasse.com *.dns.billigakasse.com *.hostmaster.billigakasse.com *.painel.billigakasse.com *.staging.billigakasse.com *.ww16.billigakasse.com *.ww25.billigakasse.com *.ww38.billigakasse.com
caribbeanresort.net *.caribbeanresort.net *.m.caribbeanresort.net *.qa.caribbeanresort.net *.rdp.caribbeanresort.net *.rds.caribbeanresort.net *.sharepoint.caribbeanresort.net
*.cpanel.dubinsky.pro dubinsky.pro *.dubinsky.pro *.eng.dubinsky.pro *.test1.dubinsky.pro *.traff.dubinsky.pro
galaxydeal.xyz *.galaxydeal.xyz *.ww25.galaxydeal.xyz
goocli.com *.goocli.com *.ww25.goocli.com *.ww38.goocli.com *.ww7.goocli.com *.www.goocli.com
*.3e8ba7aa-606e-4ccb-9024-3e1a50d1ddcf.iota.dance *.5f84daac-f8b6-47d9-8f28-384f5902da2f.iota.dance *.aavptuser.iota.dance iota.dance *.iota.dance
*.ksrvzwiki.livingwake.com livingwake.com *.livingwake.com *.m.livingwake.com *.wiki.livingwake.com *.ww16.livingwake.com
*.board.ningyocho.com *.dns.ningyocho.com *.m.ningyocho.com ningyocho.com *.ningyocho.com *.online.ningyocho.com *.sistema.ningyocho.com *.sitemap.ningyocho.com *.ww16.ningyocho.com
*.api.ourgoldenprimer.biz *.app.ourgoldenprimer.biz *.b560f288-b480-4cfd-af5d-1066c5d55900.ourgoldenprimer.biz ourgoldenprimer.biz *.ourgoldenprimer.biz *.vendas.ourgoldenprimer.biz *.ytvgazlu.ourgoldenprimer.biz
*.exam.penaltycoat.cfd penaltycoat.cfd *.penaltycoat.cfd *.pretty.penaltycoat.cfd
tinhduchoc.com *.tinhduchoc.com *.ww16.tinhduchoc.com *.ww25.tinhduchoc.com
*.m.wh-solution.com wh-solution.com *.wh-solution.com