76/100 SECURITY SCORE

Certificate Information

Subject
CN=bye-bye.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 19, 2026
Valid Until
June 17, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8A:84:C4:08:92:FD:F4:17:88:AA:17:C0:F0:AC:D8:57:31:0F:69:2E:DB:D2:EB:21:D3:FF:0B:4E:02:B1:D6:69
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
dingyijie.space *.dingyijie.space *.study.dingyijie.space

Other domains in certificate

136770.xyz *.136770.xyz *.7.136770.xyz
4315695.com *.4315695.com *.ww38.4315695.com
alpenblickresort.com *.alpenblickresort.com *.ww12.alpenblickresort.com *.ww7.alpenblickresort.com
*.api.bye-bye.it bye-bye.it *.bye-bye.it
dservq.com *.dservq.com *.s.dservq.com
green.buzz *.green.buzz *.steel.green.buzz
hoangthaplinh.online *.hoangthaplinh.online *.ww25.hoangthaplinh.online
kokwooncenter.com *.kokwooncenter.com *.www.kokwooncenter.com
*.0duqi.leddiodes.com *.0dwxc.leddiodes.com *.15czv.leddiodes.com *.3dflh.leddiodes.com *.4vt8z.leddiodes.com *.5q3iy.leddiodes.com *.6jj5f.leddiodes.com *.6p17b.leddiodes.com *.7r1ii.leddiodes.com *.8kbqjc.leddiodes.com *.8wkx4.leddiodes.com *.9bfhf.leddiodes.com *.cy6rx.leddiodes.com *.gqxzv.leddiodes.com leddiodes.com *.leddiodes.com *.ltanz.leddiodes.com *.oidb3.leddiodes.com *.ootsl.leddiodes.com *.pap4w.leddiodes.com *.qx7dw.leddiodes.com *.rod6a.leddiodes.com *.tm95f.leddiodes.com *.tu1dp.leddiodes.com *.vkv0l.leddiodes.com *.www.leddiodes.com *.zq0tv.leddiodes.com
*.ftp.paymenthub.cc paymenthub.cc *.paymenthub.cc *.sitemaps.paymenthub.cc *.webdisk.paymenthub.cc *.ww25.paymenthub.cc *.ww38.paymenthub.cc *.www.paymenthub.cc
sawsharpener.com *.sawsharpener.com
studiodentaledentimax.com *.studiodentaledentimax.com *.ww25.studiodentaledentimax.com
*.a111a0da-9196-46c3-bc5f-620bc36262fb.tp2617.com *.app.tp2617.com *.remote.tp2617.com *.rustore.tp2617.com tp2617.com *.tp2617.com
*.random.tykarpsgrottanscamping.net tykarpsgrottanscamping.net *.tykarpsgrottanscamping.net
*.5c8w7bahdedizw.vacantseats.click *.7f6335dfeb2a39.vacantseats.click *.aeceapejeif3aa.vacantseats.click *.c97b18de54a4e.vacantseats.click vacantseats.click *.vacantseats.click
whoisnumberlookup.com *.whoisnumberlookup.com
*.mail.xodiom.com *.www.xodiom.com xodiom.com *.xodiom.com