76/100 SECURITY SCORE

Certificate Information

Subject
CN=positivepropertyinfo.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 19, 2026
Valid Until
August 17, 2026 63 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:F1:E4:AC:1C:3A:11:87:6C:64:92:D8:AA:BB:12:1A:48:80:17:31:D0:77:2B:E8:7D:62:24:7B:B0:0E:CC:96
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
vavadami32.com *.vavadami32.com *.ads.vavadami32.com *.app.vavadami32.com *.assets.vavadami32.com *.blog.vavadami32.com *.demo.vavadami32.com *.dev.vavadami32.com *.ftp.vavadami32.com *.login.vavadami32.com *.m.vavadami32.com *.mail.vavadami32.com *.olalsm.vavadami32.com *.pop.vavadami32.com *.r2d2.vavadami32.com *.shop.vavadami32.com *.sitemap.vavadami32.com *.sitemaps.vavadami32.com *.smtp.vavadami32.com *.staging.vavadami32.com *.testing.vavadami32.com *.vddcqassets.vavadami32.com *.vpn.vavadami32.com *.www1.vavadami32.com

Other domains in certificate

12mv.cc *.12mv.cc *.1bbam.12mv.cc *.3y77r.12mv.cc *.673qd.12mv.cc *.96rm2.12mv.cc *.c4km7.12mv.cc *.qxozh.12mv.cc *.www.12mv.cc *.zbgc9.12mv.cc
37337.blog *.37337.blog *.blog.37337.blog
8xbets.us *.8xbets.us
*.32.appx.studio *.a2g.appx.studio appx.studio *.appx.studio *.parse.appx.studio
cegledirugby.com *.cegledirugby.com *.m.cegledirugby.com
congthanhchienxua.net *.congthanhchienxua.net *.danhson.congthanhchienxua.net *.dautruong.congthanhchienxua.net *.dgks.congthanhchienxua.net *.landing.congthanhchienxua.net
*.api.cosmetology.cc *.assets.cosmetology.cc cosmetology.cc *.cosmetology.cc *.demo.cosmetology.cc *.m.cosmetology.cc *.shop.cosmetology.cc *.sitemap.cosmetology.cc *.staging.cosmetology.cc *.wildcard.cosmetology.cc
guccipg.org *.guccipg.org *.random.guccipg.org *.ww25.guccipg.org *.www.guccipg.org
gyving.xyz *.gyving.xyz
*.ai.instorey.co instorey.co *.instorey.co
*.comune.positivepropertyinfo.net *.email.positivepropertyinfo.net *.mail.positivepropertyinfo.net positivepropertyinfo.net *.positivepropertyinfo.net
*.4022b6d3-fc31-475d-94be-429d3376c261.startmedtheory.com *.410f7c0d-dcc0-4679-b957-24a2e924ab00.startmedtheory.com *.api.startmedtheory.com *.app.startmedtheory.com *.backup.startmedtheory.com *.nz2qne.startmedtheory.com *.remote.startmedtheory.com startmedtheory.com *.startmedtheory.com *.www.startmedtheory.com
wholebeastprotein.website *.wholebeastprotein.website