76/100 SECURITY SCORE

Certificate Information

Subject
CN=themissingpiecestyle.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 22, 2026
Valid Until
July 21, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A7:91:DF:37:3A:A5:DB:A5:88:C3:21:C0:5D:F2:67:00:E0:C0:6A:3A:9F:22:63:9B:40:61:1C:C0:B2:D7:C3:23
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
themissingpiecestyle.com *.themissingpiecestyle.com

Other domains in certificate

agarbattis.in *.agarbattis.in
deccanai.com *.deccanai.com
nycforlebron.net *.nycforlebron.net
ohioans4financialfreedom.com *.ohioans4financialfreedom.com
onchainguy.com *.onchainguy.com
onchainhorizon.com *.onchainhorizon.com
openbase.co *.openbase.co
palmspringsgalleria.com *.palmspringsgalleria.com
philosapollo.com *.philosapollo.com
playgame168bet.com *.playgame168bet.com
playgame168ez.com *.playgame168ez.com
playgame168vip.com *.playgame168vip.com
playjustlikeyou.com *.playjustlikeyou.com
portclydeseafoodco.com *.portclydeseafoodco.com
portraitofchurchill.com *.portraitofchurchill.com
portraitsforgood.com *.portraitsforgood.com
power-nippon.com *.power-nippon.com
procapitalist.org *.procapitalist.org
prosperousapp.com *.prosperousapp.com
renaso.com *.renaso.com
rev-jen.com *.rev-jen.com
reverse.bio *.reverse.bio
rjbolands.com *.rjbolands.com
schmidt09.com *.schmidt09.com
search-online-psychological-test-mental-health-now-br.sbs *.search-online-psychological-test-mental-health-now-br.sbs
second-hand-car-for-sale-in-all.sbs *.second-hand-car-for-sale-in-all.sbs
security-guard-job-1t1w7w5d0n6.sbs *.security-guard-job-1t1w7w5d0n6.sbs
setonnotes.info *.setonnotes.info
signonsndiego.com *.signonsndiego.com
smart3000.com *.smart3000.com
solhts.com *.solhts.com
sparkwolf.com *.sparkwolf.com
sport.cfd *.sport.cfd
sposatocostruzioni.com *.sposatocostruzioni.com
spryhut.com *.spryhut.com
stahl4congress.com *.stahl4congress.com
swallowbistro.com *.swallowbistro.com
techlyq.com *.techlyq.com
tedbakercanadasale.com *.tedbakercanadasale.com
telefon-search-ro.sbs *.telefon-search-ro.sbs
thecodacollection.com *.thecodacollection.com
thelibyaconference.com *.thelibyaconference.com
thericecreamery.com *.thericecreamery.com
zupeiping.cn *.zupeiping.cn