76/100 SECURITY SCORE

Certificate Information

Subject
CN=smarterbookie.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 02, 2026
Valid Until
July 31, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
88:DA:F0:CF:C5:97:85:8D:74:6E:7C:29:0E:B6:77:C6:00:AD:D3:33:C1:6B:5B:11:3D:19:BD:D8:4A:96:58:B7
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
thecustomplastic.immo *.thecustomplastic.immo *.4a1ad592-3bfc-45a8-9a46-bf8794171de0.thecustomplastic.immo *.api.thecustomplastic.immo *.dev.thecustomplastic.immo *.vhtjev.thecustomplastic.immo *.www.thecustomplastic.immo

Other domains in certificate

*.comune.hdbright.com hdbright.com *.hdbright.com *.hostmaster.hdbright.com *.info.hdbright.com *.ns1.hdbright.com *.ns2.hdbright.com *.smtp1.hdbright.com *.smtp2.hdbright.com *.webmail.hdbright.com *.www.hdbright.com
hindimanga.com *.hindimanga.com *.manhwa.hindimanga.com *.webtoon.hindimanga.com
*.mx.mysupplements.co mysupplements.co *.mysupplements.co *.sitemap.mysupplements.co
*.account.oetickets.at *.admin.oetickets.at *.agent.oetickets.at *.analytic.oetickets.at *.analytics-qa.oetickets.at *.api.oetickets.at *.app.oetickets.at *.backup.oetickets.at *.bi.oetickets.at *.client.oetickets.at *.crm.oetickets.at *.customer.oetickets.at *.dashboard.oetickets.at *.demo.oetickets.at *.dev.oetickets.at *.ead.oetickets.at *.fanuwklj.oetickets.at *.files.oetickets.at *.ftp.oetickets.at *.home.oetickets.at *.hotfix.oetickets.at *.insight-beta.oetickets.at *.intranet.oetickets.at *.iybkxhmc.oetickets.at *.kafka.oetickets.at *.kunde.oetickets.at *.kunden.oetickets.at *.kundenportal.oetickets.at *.m.oetickets.at *.mobile.oetickets.at *.msxqikar.oetickets.at *.my.oetickets.at *.new.oetickets.at *.news.oetickets.at *.notexistsadmin.oetickets.at *.notexistsdev.oetickets.at oetickets.at *.oetickets.at *.old.oetickets.at *.parked.oetickets.at *.partner.oetickets.at *.portal.oetickets.at *.preview.oetickets.at *.rd.oetickets.at *.rds.oetickets.at *.rdweb.oetickets.at *.reporting-demo.oetickets.at *.shop.oetickets.at *.sitemaps.oetickets.at *.store.oetickets.at *.superset-beta.oetickets.at *.test.oetickets.at *.tracking.oetickets.at *.uat.oetickets.at *.user.oetickets.at *.users.oetickets.at *.viz-preprod.oetickets.at *.vpn.oetickets.at *.webmail.oetickets.at *.www.oetickets.at
*.mx.smarterbookie.com smarterbookie.com *.smarterbookie.com