76/100 SECURITY SCORE

Certificate Information

Subject
CN=backupguys.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026 46 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:9A:57:5D:F6:CA:15:35:07:A9:69:1E:83:91:1C:75:DA:BA:9E:C4:92:2F:66:3F:24:1C:E1:DF:79:54:65:4A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
bestgames.it *.bestgames.it *.admin.bestgames.it *.app.bestgames.it *.relay.bestgames.it *.staging.bestgames.it *.superset.bestgames.it

Other domains in certificate

3348nft.xyz *.3348nft.xyz *.app.3348nft.xyz *.dev.3348nft.xyz *.gsesordweb.3348nft.xyz *.ts2012.3348nft.xyz
668lala1.com *.668lala1.com *.www.668lala1.com
acquisitionapt.com *.acquisitionapt.com *.members.acquisitionapt.com
advanceamplifyycrown.info *.advanceamplifyycrown.info *.q4kiz9.advanceamplifyycrown.info
backupguys.xyz *.backupguys.xyz *.news.backupguys.xyz
blueskyplace.com *.blueskyplace.com *.m.blueskyplace.com *.ww12.blueskyplace.com
corderpestcontrol.com *.corderpestcontrol.com *.cpanel.corderpestcontrol.com *.ebmail.corderpestcontrol.com *.m.corderpestcontrol.com *.mail.corderpestcontrol.com *.remote.corderpestcontrol.com *.sitemap.corderpestcontrol.com *.sitemaps.corderpestcontrol.com *.webdisk.corderpestcontrol.com *.webmail.corderpestcontrol.com *.wildcard.corderpestcontrol.com *.www.corderpestcontrol.com *.wwww.corderpestcontrol.com
*.254704-a.curtismorrisonforcongressmail.com *.254717-a.curtismorrisonforcongressmail.com *.254718-a.curtismorrisonforcongressmail.com *.254826-a.curtismorrisonforcongressmail.com *.254916-a.curtismorrisonforcongressmail.com curtismorrisonforcongressmail.com *.curtismorrisonforcongressmail.com
*.app.dropmaza.store *.demo.dropmaza.store *.dev.dropmaza.store dropmaza.store *.dropmaza.store
*.cpcontacts.emma.com.au emma.com.au *.emma.com.au *.engagement.emma.com.au *.support.emma.com.au
ignitetvrogers.com *.ignitetvrogers.com *.ww25.ignitetvrogers.com *.ww38.ignitetvrogers.com
linkvaotop88.foo *.linkvaotop88.foo *.random.linkvaotop88.foo *.www.linkvaotop88.foo
luxuryrealestateindubai.com *.luxuryrealestateindubai.com *.yesapi.luxuryrealestateindubai.com
megvii.xyz *.megvii.xyz
okbazzar.online *.okbazzar.online
*.59970793-b233-4bfe-bd52-7303c110a25a.vansourcing.com *.api.vansourcing.com *.sitemap.vansourcing.com *.sitemaps.vansourcing.com vansourcing.com *.vansourcing.com *.www.vansourcing.com
*.admin.web3offline.io *.bot.web3offline.io *.dashboard.web3offline.io *.dev.web3offline.io *.test.web3offline.io web3offline.io *.web3offline.io