76/100 SECURITY SCORE

Certificate Information

Subject
CN=supportppets.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 04, 2026
Valid Until
September 02, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FE:61:6B:60:9A:85:D9:36:17:D1:96:1F:53:A2:DF:B4:28:1A:57:56:A1:9A:8D:63:16:E9:E2:1C:16:6F:1C:65
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
supportppets.com *.supportppets.com *.app.supportppets.com *.bestellen.supportppets.com *.demo.supportppets.com *.docs.supportppets.com *.external.supportppets.com *.intranet.supportppets.com *.my.supportppets.com *.public.supportppets.com *.rdweb.supportppets.com *.shop.supportppets.com *.sitemap.supportppets.com *.store.supportppets.com *.test.supportppets.com *.vpn.supportppets.com *.webmail.supportppets.com *.www.supportppets.com

Other domains in certificate

*.7a3b4a74-d193-4616-8049-10ccde927cfd.preowned.autos *.ad.preowned.autos *.adblock.preowned.autos *.adguard.preowned.autos *.adguard1.preowned.autos *.admin.preowned.autos *.agh.preowned.autos *.api.preowned.autos *.assets.preowned.autos *.axqucuwqpyrwtjxdns.preowned.autos *.demo.preowned.autos *.dev.preowned.autos *.dns.preowned.autos *.dns1.preowned.autos *.docs.preowned.autos *.doh.preowned.autos *.doh1.preowned.autos *.external.preowned.autos *.intranet.preowned.autos *.m.preowned.autos *.new.preowned.autos *.portal.preowned.autos preowned.autos *.preowned.autos *.public.preowned.autos *.resolver.preowned.autos *.s6a28l.preowned.autos *.sharepoint.preowned.autos *.staging.preowned.autos *.uat.preowned.autos *.www.preowned.autos *.ytezhdns.preowned.autos
*.backup.topui.vip *.dashboard.topui.vip *.dev.topui.vip *.mail.topui.vip *.mailer.topui.vip *.marketing.topui.vip *.new.topui.vip *.staging.topui.vip topui.vip *.topui.vip *.v1.topui.vip *.vip.topui.vip
*.544c8b28-1686-4b91-a44c-b759015daf4c.whatabrotherneeds.info *.a.whatabrotherneeds.info *.admin.whatabrotherneeds.info *.assets.whatabrotherneeds.info *.dev.whatabrotherneeds.info *.login.whatabrotherneeds.info whatabrotherneeds.info *.whatabrotherneeds.info
*.m.xn--wlqy42g4gf7vt.com *.service.xn--wlqy42g4gf7vt.com *.vqznjmail.xn--wlqy42g4gf7vt.com *.wildcard.xn--wlqy42g4gf7vt.com xn--wlqy42g4gf7vt.com *.xn--wlqy42g4gf7vt.com
*.a.xn--xe5by2a9l.info *.app.xn--xe5by2a9l.info *.backup.xn--xe5by2a9l.info *.dashboard.xn--xe5by2a9l.info *.jtaxddev.xn--xe5by2a9l.info *.mail.xn--xe5by2a9l.info *.mailer.xn--xe5by2a9l.info *.qa.xn--xe5by2a9l.info *.secure.xn--xe5by2a9l.info *.staging.xn--xe5by2a9l.info *.uat.xn--xe5by2a9l.info *.web.xn--xe5by2a9l.info xn--xe5by2a9l.info *.xn--xe5by2a9l.info