76/100 SECURITY SCORE

Certificate Information

Subject
CN=samsong.net
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 15, 2026
Valid Until
August 13, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
23:B3:29:8A:B2:3A:FF:CB:CA:9C:E2:0B:77:79:DC:63:9F:7E:25:3B:43:3B:FC:39:61:5E:92:79:A5:67:02:9B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
tokenization.markets *.tokenization.markets

Other domains in certificate

1377x.biz *.1377x.biz *.m.1377x.biz *.ww25.1377x.biz
aiamericaniron.com *.aiamericaniron.com
antonetteelizabeth.net *.antonetteelizabeth.net
asfokan.com *.asfokan.com
avatoys.com.br *.avatoys.com.br *.ns2.avatoys.com.br
conceptorylab.com *.conceptorylab.com
csiulf.com *.csiulf.com
exad.pro *.exad.pro
goldenweddingschoice.beauty *.goldenweddingschoice.beauty
goldenwolf.org *.goldenwolf.org
gomov.lol *.gomov.lol
graceful-glow.com *.graceful-glow.com
h272xy.cyou *.h272xy.cyou
iconspring.com *.iconspring.com
localvpn.click *.localvpn.click *.ww25.localvpn.click
*.app.mycofruit.com *.demo.mycofruit.com *.hostmaster.mycofruit.com mycofruit.com *.mycofruit.com *.www.mycofruit.com
*.api.nu-indenizabr.pro *.app.nu-indenizabr.pro nu-indenizabr.pro *.nu-indenizabr.pro *.www.nu-indenizabr.pro
*.cafanca.prisma.red *.gd.prisma.red prisma.red *.prisma.red *.wjesmaoi.prisma.red
safir.life *.safir.life
*.02.samsong.net *.06.samsong.net *.07.samsong.net *.election.samsong.net *.login.samsong.net samsong.net *.samsong.net *.sec.samsong.net *.web.samsong.net *.www.samsong.net
*.cpanel.sosurvey.com *.mail.sosurvey.com sosurvey.com *.sosurvey.com *.webmail.sosurvey.com
toolzyro.cc *.toolzyro.cc
tpvsolutions.co *.tpvsolutions.co *.ww25.tpvsolutions.co
*.magento.virginias-garden.com virginias-garden.com *.virginias-garden.com
wakgengs.pro *.wakgengs.pro *.ww25.wakgengs.pro
*.gw2-hero-points-map.wisewhiz.cfd *.iec-norm-81346-1.wisewhiz.cfd *.israeli-eagle-pistol.wisewhiz.cfd *.ncrc-map-umich.wisewhiz.cfd *.spendenkonto-wikipedia.wisewhiz.cfd *.stable-diffusion-celeb.wisewhiz.cfd *.voitsberg-htl.wisewhiz.cfd wisewhiz.cfd *.wisewhiz.cfd *.ww25.wisewhiz.cfd