76/100 SECURITY SCORE

Certificate Information

Subject
CN=tryhealpower.space
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026 74 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
13:DC:A8:5D:65:8F:74:7F:09:DA:58:77:D8:1A:DA:2B:1F:B8:69:88:C7:83:C2:A4:D8:5A:03:78:F2:29:0F:D4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
thecampout.com *.thecampout.com

Other domains in certificate

arthamas.com *.arthamas.com
cdxob.gdn *.cdxob.gdn
cotabato.com *.cotabato.com
fitnesssynergygroup.run *.fitnesssynergygroup.run
foreversummertan.com *.foreversummertan.com
hallahan.com *.hallahan.com
hy91607.cc *.hy91607.cc
hy91746.cc *.hy91746.cc
loanbyemail.com *.loanbyemail.com *.sitemaps.loanbyemail.com
localgossipspot.live *.localgossipspot.live
nourishbloomgardens.live *.nourishbloomgardens.live
orzgv.net *.orzgv.net
pinsan.com *.pinsan.com
qbkvd.gdn *.qbkvd.gdn
qinjin.com *.qinjin.com
qpcue.gdn *.qpcue.gdn
reanative.xyz *.reanative.xyz
segobriga.com *.segobriga.com
severac.com *.severac.com
shreecomputer.com *.shreecomputer.com
stotland.com *.stotland.com
thebigslice.com *.thebigslice.com
thechurchofrockandroll.com *.thechurchofrockandroll.com
thuongmaidientu.com *.thuongmaidientu.com
tryhealpower.space *.tryhealpower.space *.wap.tryhealpower.space
vidanuevaradio.com *.vidanuevaradio.com
vq2sznj.cyou *.vq2sznj.cyou
waishu.com *.waishu.com
wandertraveltours.live *.wandertraveltours.live
wcdlu.gdn *.wcdlu.gdn
weddingsbeyondordinary.beauty *.weddingsbeyondordinary.beauty
weddingsforeverbliss.beauty *.weddingsforeverbliss.beauty
weddingsgoldenhighlights.beauty *.weddingsgoldenhighlights.beauty
weddingsinspirehearts.beauty *.weddingsinspirehearts.beauty
weddingsjubileeparty.beauty *.weddingsjubileeparty.beauty
weddingslifetimegrace.beauty *.weddingslifetimegrace.beauty
westpoort.com *.westpoort.com
worldsgreatesthome.com *.worldsgreatesthome.com
wprcg.gdn *.wprcg.gdn
wvumb.gdn *.wvumb.gdn
xiu4069a.cc *.xiu4069a.cc
ynxjc.gdn *.ynxjc.gdn