76/100 SECURITY SCORE

Certificate Information

Subject
CN=793331.vip
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 12, 2026
Valid Until
August 10, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:47:7A:4B:67:79:EB:8D:73:4F:08:DB:C6:3E:A6:54:71:0B:AB:CD:B1:58:D0:BB:43:C6:D1:85:3F:2F:2F:9F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
takeoffmigration.com *.takeoffmigration.com *.autodiscover.takeoffmigration.com

Other domains in certificate

793331.vip *.793331.vip *.a.793331.vip
bawattbzy.com *.bawattbzy.com *.ww38.bawattbzy.com
calendar2025.org *.calendar2025.org *.m.calendar2025.org
*.3jbxha.eforhedidnota.com eforhedidnota.com *.eforhedidnota.com *.ww25.eforhedidnota.com *.ww38.eforhedidnota.com
*.32.luckia.vip luckia.vip *.luckia.vip *.www.luckia.vip
muscattransports.com *.muscattransports.com *.ww38.muscattransports.com *.www.muscattransports.com
oakbluffsfireandems.com *.oakbluffsfireandems.com *.sadupoto.oakbluffsfireandems.com
pajamas.baby *.pajamas.baby *.quince.pajamas.baby
*.clubww25.repelisplus19.club *.cpcontacts.repelisplus19.club repelisplus19.club *.repelisplus19.club *.v1.repelisplus19.club *.v2.repelisplus19.club *.v3.repelisplus19.club
*.cpanel.sitiocompa.org *.random.sitiocompa.org sitiocompa.org *.sitiocompa.org
*.dan.sportica.co sportica.co *.sportica.co
*.07017bc3-90c4-4adc-9323-7e1a4000ee87.theusagetv.org *.admin.theusagetv.org *.api.theusagetv.org *.app.theusagetv.org *.assets.theusagetv.org *.demo.theusagetv.org *.dev.theusagetv.org *.ffffffffffff.theusagetv.org *.m.theusagetv.org *.members.theusagetv.org *.random.theusagetv.org *.rustore.theusagetv.org *.staging.theusagetv.org *.test.theusagetv.org theusagetv.org *.theusagetv.org *.webmail.theusagetv.org *.ww1.theusagetv.org *.ww38.theusagetv.org *.www.theusagetv.org
*.images.weightlessdrive.com weightlessdrive.com *.weightlessdrive.com
*.vpn.xn--ghqx74a9la.com *.www.xn--ghqx74a9la.com xn--ghqx74a9la.com *.xn--ghqx74a9la.com
*.m.xn--nwry2m.com *.www.xn--nwry2m.com xn--nwry2m.com *.xn--nwry2m.com
*.500m.yundian.club *.backup.yundian.club *.email.yundian.club *.lisa.yundian.club *.sg.yundian.club *.us.yundian.club *.v2b.yundian.club *.vps.yundian.club *.vps02.yundian.club *.wwww.yundian.club *.x.yundian.club *.xpanel.yundian.club yundian.club *.yundian.club