76/100 SECURITY SCORE

Certificate Information

Subject
CN=movievillas.cloud
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026 77 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CD:B0:61:27:CB:F8:BD:4A:6F:CA:17:74:2D:DB:DB:F0:DC:AD:90:42:A0:F4:0D:CE:39:5F:6B:0A:4E:BA:D6:C7
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
lightwise.com *.lightwise.com *.bgyhaexkmzconnectvpn.lightwise.com *.client.lightwise.com *.office.lightwise.com *.portal.lightwise.com *.sitemaps.lightwise.com *.ssl.lightwise.com *.vpn1.lightwise.com *.vpn2.lightwise.com *.web.lightwise.com *.webconnect.lightwise.com *.ww16.lightwise.com

Other domains in certificate

51cg01.cc *.51cg01.cc *.ww38.51cg01.cc
a401.store *.a401.store
arlalandwirte.com *.arlalandwirte.com *.m.arlalandwirte.com
*.app.boximensajeria.com *.boleteria.boximensajeria.com boximensajeria.com *.boximensajeria.com *.express.boximensajeria.com *.learn.boximensajeria.com *.tiendas.boximensajeria.com *.wallet.boximensajeria.com *.ww25.boximensajeria.com
*.cloud.columbiaauthority.com columbiaauthority.com *.columbiaauthority.com
desados.com *.desados.com
*.api.gouza.com gouza.com *.gouza.com *.oa.gouza.com *.portal.gouza.com *.sslvpn.gouza.com *.test.gouza.com *.vpn.gouza.com
jurachina.site *.jurachina.site *.ww38.jurachina.site
*.383c6b596dbe.movievillas.cloud movievillas.cloud *.movievillas.cloud
*.backup.mykerinos.com *.ciscovpn.mykerinos.com *.help.mykerinos.com mykerinos.com *.mykerinos.com *.vpn.mykerinos.com *.vpn01.mykerinos.com *.vpn1.mykerinos.com *.ww17.mykerinos.com
*.2a.orgasmservice.com *.77.orgasmservice.com *.belso.orgasmservice.com *.cpanel.orgasmservice.com *.cpcontacts.orgasmservice.com *.hu.orgasmservice.com *.m.orgasmservice.com *.ns2.orgasmservice.com orgasmservice.com *.orgasmservice.com *.website.orgasmservice.com *.wildcard.orgasmservice.com *.ww25.orgasmservice.com
predecisions.com *.predecisions.com *.remote.predecisions.com *.wildcard.predecisions.com *.ww16.predecisions.com *.ww25.predecisions.com *.ww38.predecisions.com
*.289b371d-dfa7-4890-83a0-389094d6dfeb.r34.studio *.mail.r34.studio r34.studio *.r34.studio
rajaoarinelina.com *.rajaoarinelina.com
*.en.softonics.com softonics.com *.softonics.com
*.production.vikkie.com vikkie.com *.vikkie.com