Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=bingelymovies.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 03, 2026
Valid Until
May 04, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5B:C2:7B:5E:F5:FA:8B:3A:1F:37:82:C3:1D:0C:D5:65:F3:32:0D:95:94:94:EC:88:19:78:CA:1F:A2:93:B9:AA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
wagondrill.com
*.wagondrill.com
bingelymovies.com
*.bingelymovies.com
*.dashboard.bingelymovies.com
*.smtpa.bingelymovies.com
*.stg.bingelymovies.com
btcmd.com
*.btcmd.com
*.static.btcmd.com
caessars.com
*.caessars.com
*.ildcard.caessars.com
*.random.caessars.com
*.ww38.caessars.com
newsktech.co.in
*.newsktech.co.in
*.access.deder.com
deder.com
*.deder.com
dissonante.com
*.dissonante.com
*.rustore.dissonante.com
gubic.com
*.gubic.com
*.ww1.gubic.com
pavimentolegno.com
*.pavimentolegno.com
pawsforacure.com
*.pawsforacure.com
*.ww25.pawsforacure.com
*.fortinet.pinello.com
pinello.com
*.pinello.com
*.webmail.pinello.com
play-infernal-terminal.xyz
*.play-infernal-terminal.xyz
prpgvsavth.me
*.prpgvsavth.me
pv92.cc
*.pv92.cc
qdome.com
*.qdome.com
*.vpn.qdome.com
racxily.com
*.racxily.com
s9lcv.biz
*.s9lcv.biz
satay.best
*.satay.best
*.ebay.seawaterspray.com
seawaterspray.com
*.seawaterspray.com
*.sitemaps.seawaterspray.com
*.520.ssbb520.xyz
*.552200.ssbb520.xyz
*.ddyy.ssbb520.xyz
*.dhsk.ssbb520.xyz
*.qwe520.ssbb520.xyz
ssbb520.xyz
*.ssbb520.xyz
*.ww25.ssbb520.xyz
*.ww38.ssbb520.xyz
*.wwww.ssbb520.xyz
tcu8.us
*.tcu8.us
tnt360.com
*.tnt360.com
tophealthstore.com
*.tophealthstore.com
traveladventurepaths.live
*.traveladventurepaths.live
trysyny-skhidnitsa.com
*.trysyny-skhidnitsa.com
uhdco.academy
*.uhdco.academy
vnhhqt.top
*.vnhhqt.top
xn--9kqa3728a.xyz
*.xn--9kqa3728a.xyz
xn--9kqy4sc0noqgk24a.xyz
*.xn--9kqy4sc0noqgk24a.xyz
xn--9kqy4snrbuv0amr2d.xyz
*.xn--9kqy4snrbuv0amr2d.xyz
xn--jlq609erv7a.com
*.xn--jlq609erv7a.com
ymzb812.com
*.ymzb812.com
yqezs.academy
*.yqezs.academy
Other domains in certificate