Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=shipwreck.studio
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 18, 2026
Valid Until
April 18, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
65:EE:15:00:85:7E:50:0D:E6:60:6C:BA:B9:14:AC:9B:06:09:56:EA:D7:8B:1C:6F:74:74:7C:01:D4:2A:A3:89
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
coastauction.com
*.coastauction.com
*.blog.coastauction.com
*.bonus.coastauction.com
*.cit.coastauction.com
*.einstein.coastauction.com
*.intern.coastauction.com
*.ntp.coastauction.com
*.olga.coastauction.com
*.pool.coastauction.com
*.pop.coastauction.com
*.pop2.coastauction.com
*.publicapi.coastauction.com
*.resources.coastauction.com
*.search.coastauction.com
*.slave.coastauction.com
*.team.coastauction.com
*.test3.coastauction.com
*.ww17.coastauction.com
*.ww38.coastauction.com
cambriahotelpaignton.co.uk
*.cambriahotelpaignton.co.uk
*.ww25.cambriahotelpaignton.co.uk
financexpress.us
*.financexpress.us
*.integration.financexpress.us
*.mail.financexpress.us
*.app.khujand.com
*.ar.khujand.com
*.art.khujand.com
*.blog.khujand.com
*.blogs.khujand.com
*.br.khujand.com
*.cicd.khujand.com
*.city.khujand.com
*.client.khujand.com
*.com.khujand.com
*.courts.khujand.com
*.domains.khujand.com
*.fas.khujand.com
*.fr.khujand.com
*.hqstambemecultura.khujand.com
*.in.khujand.com
*.it.khujand.com
*.jp.khujand.com
khujand.com
*.khujand.com
*.lib.khujand.com
*.lyabihouse.khujand.com
*.mc.khujand.com
*.net.khujand.com
*.pipeline.khujand.com
*.ro.khujand.com
*.ru.khujand.com
*.sa.khujand.com
*.secure.khujand.com
*.shop.khujand.com
*.sms.khujand.com
*.social.khujand.com
*.software.khujand.com
*.sports.khujand.com
*.state.khujand.com
*.us.khujand.com
*.web.khujand.com
*.ww25.khujand.com
*.www.khujand.com
*.yz.khujand.com
*.dh.lanmo.ltd
lanmo.ltd
*.lanmo.ltd
polasirmenang.live
*.polasirmenang.live
*.rtp.polasirmenang.live
*.rtp1.polasirmenang.live
*.rtp3.polasirmenang.live
*.rtp4.polasirmenang.live
*.rtp5.polasirmenang.live
*.rtp6.polasirmenang.live
*.rtp7.polasirmenang.live
*.rtp9.polasirmenang.live
*.cbde6374-16ab-4a48-a248-6ac8d863eecb.shipwreck.studio
shipwreck.studio
*.shipwreck.studio
*.chat.sncraft.online
*.notion.sncraft.online
*.old.sncraft.online
sncraft.online
*.sncraft.online
*.super.sncraft.online
*.vote.sncraft.online
Other domains in certificate