77/100 SECURITY SCORE

Certificate Information

Subject
CN=links.exercast.app
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 01, 2026
Valid Until
April 01, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D0:62:D3:6C:C6:D3:41:23:31:8A:21:F5:92:F1:4C:76:2B:27:6A:0A:2A:BF:36:2C:DE:7B:34:E2:41:B4:47:6B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
v2.immersion.xcwalker.dev

Other domains in certificate

6413nbell.com
crm-demo.aadviklabs.com
www.karamatgirlscollege.ac.in
anagramsgold.com
ashutoshshelke.com
c-error.net
ceabragado.com
certian.com
challengesyou.com
chenkang-health.com
www.chiesisayls.mx
cmlithaca.org
coderscrew.tech
coffdee.com
cop30imoveis.com.br
www.app.cpavance.com
cpxvendors.com
www.crispycustoms.cc
crocodiletouring.com
www.csfuelcorp.com
www.custom-tees.app
daokraft.ai
dataclouder.dev
dave-becker.com
diegoorozco.com
easysmartagency.com
links.exercast.app
admin.fooditec.com
dev.diamond.freshcut.gg
www.funeasylearn.com
gadgetsgurus.shop
archery.games235.com totemia.games235.com towercrash3d.games235.com
id.cxtool.getignite.app
gnaabc.com
www.hadicreciendojuntos.com
www.hink.cloud
www.hrlogix.com.au
aippetizer.ilir.xyz
kapil.info.np
instilplay.com
izadorarocha.com.br
kaalkikhalsa.com
kadamz.com
lmsuser.kcglobed.com
www.krishnabrand.in
lalibrotecapr.com
liftexpo.es
lingganayresort.com
logicus.tech
longrich.online
www.maashaktienterprise.in
www.macodj.com
www.magnetic-marten.com
mensajesdelaeradelordenador.com
muyhambriento.com
www.jokitugas.my.id
npiapi.com
onskydigital.com
playsystemglobal.com
prendu.com
promptsincreibles.com
qns.icu
qriositynet.com
queerbrestfest.fr
app.queueform.com
auth.raygum.com
dashboard-staging.recidiviz.org
game.regu.id
auth.lnb.rhythmbhiwani.in auth.lnq.rhythmbhiwani.in
www.saranraj.com
www.scopewit.pl
socios.evolucionsgr.sgroneclick.com socios.fidavalsgr.sgroneclick.com
shareweddings.com
skysentric.com
songvetkasem.com
manage.techferment.com
account.telebroad.com legacy.app.telebroad.com
thegapwall.com
theiptvpro.com
tirtajaya.vip
assisted.trilops.com
www.vecu.xyz
www.vuojolahti.com
wettechdreams.com www.wettechdreams.com
www.whalesarefish.com
signin.whatclass.net
xn--eiscafe-siebenhner-06b.de
www.xn--elmnpolku-w2ab.fi
xn--oo8b.com
ynriver.com
v2.yt1s.biz
goerli-polygon-bridge.zed.run
www.zonasverdeslc.com