87/100 SECURITY SCORE

Certificate Information

Subject
CN=comparetransfer.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:02:51:C7:93:BE:10:9E:7D:DB:21:6F:E1:7E:1C:FA:A5:BC:6F:05:7F:3C:E6:23:75:0A:E5:90:C8:86:82:B4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
comparetransfer.com *.comparetransfer.com *.ar.comparetransfer.com *.au.comparetransfer.com *.bg.comparetransfer.com *.br.comparetransfer.com *.bu.comparetransfer.com *.ca.comparetransfer.com *.co.comparetransfer.com *.cr.comparetransfer.com *.cy.comparetransfer.com *.ee.comparetransfer.com *.fi.comparetransfer.com *.hu.comparetransfer.com *.ie.comparetransfer.com *.il.comparetransfer.com *.jp.comparetransfer.com *.kr.comparetransfer.com *.mt.comparetransfer.com *.my.comparetransfer.com *.no.comparetransfer.com *.pt.comparetransfer.com *.ro.comparetransfer.com *.sg.comparetransfer.com *.tn.comparetransfer.com *.tr.comparetransfer.com *.tw.comparetransfer.com *.ww25.comparetransfer.com

Other domains in certificate

169bet.bet *.169bet.bet *.admin.169bet.bet *.api.169bet.bet *.aws.169bet.bet *.blog.169bet.bet *.m.169bet.bet *.sitemap.169bet.bet
jessicaivy.com *.jessicaivy.com *.mail.jessicaivy.com *.vpn.jessicaivy.com
katun.cc *.katun.cc *.ww25.katun.cc
khosro.com *.khosro.com
koponen.com *.koponen.com
kuponus.com *.kuponus.com
kurcaci.com *.kurcaci.com
landingvisa.com *.landingvisa.com
laproprete.com *.laproprete.com
larky.net *.larky.net
laumon.com *.laumon.com
launa.com *.launa.com
launidad.com *.launidad.com
laurahooper.com *.laurahooper.com
lerouet.com *.lerouet.com
leschenes.com *.leschenes.com
liangge.com *.liangge.com
ligadefutbol.com *.ligadefutbol.com
limagier.com *.limagier.com
liveis.com *.liveis.com
ljdy.com *.ljdy.com
llantasalgosa.com *.llantasalgosa.com
llavallol.com *.llavallol.com
lombardie.com *.lombardie.com
loshechos.com *.loshechos.com
losprimeros.com *.losprimeros.com