Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=deepsky.farm
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 13, 2026
Valid Until
May 14, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3A:82:65:7D:1B:1B:22:69:F3:19:ED:A9:4A:B4:47:8F:AE:70:85:30:16:A1:1B:BF:1F:62:AC:41:24:BB:A7:78
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
wardrop.com *.wardrop.com *.access.wardrop.com *.asa.wardrop.com *.auth.wardrop.com *.ciscovpn.wardrop.com *.cpcontacts.wardrop.com *.fortinet.wardrop.com *.fortivpn.wardrop.com *.ftp.wardrop.com *.ravpn.wardrop.com *.relay.wardrop.com *.remote.wardrop.com *.wtsi.wardrop.com *.ww1.wardrop.com *.ww16.wardrop.com *.www.wardrop.com

Other domains in certificate

bbo.au *.bbo.au *.mailserver.bbo.au
box-mpo19.click *.box-mpo19.click *.m.box-mpo19.click *.random.box-mpo19.click *.ww25.box-mpo19.click *.ww38.box-mpo19.click
*.agent.deepsky.farm deepsky.farm *.deepsky.farm *.www.deepsky.farm
*.debian2.goatstore.xyz goatstore.xyz *.goatstore.xyz *.my.goatstore.xyz *.sg.goatstore.xyz *.sg7.goatstore.xyz *.v2ray.goatstore.xyz *.v2ray12.goatstore.xyz *.vray.goatstore.xyz *.ww25.goatstore.xyz
*.admin.in73r.zone *.api.in73r.zone *.beta.in73r.zone *.erp.in73r.zone *.h5.in73r.zone *.host.in73r.zone *.hostmaster.in73r.zone in73r.zone *.in73r.zone *.mail2.in73r.zone *.mx7.in73r.zone *.ns.in73r.zone *.rds1.in73r.zone *.rinppdev.in73r.zone *.sandbox.in73r.zone *.srv.in73r.zone *.static.in73r.zone *.test.in73r.zone *.webmail.in73r.zone
*.affiliate.liquorlawyer.com *.crm.liquorlawyer.com *.demo.liquorlawyer.com *.forum.liquorlawyer.com *.forums.liquorlawyer.com liquorlawyer.com *.liquorlawyer.com *.secure.liquorlawyer.com *.sitemaps.liquorlawyer.com *.ww16.liquorlawyer.com *.ww25.liquorlawyer.com *.ww38.liquorlawyer.com
panen99pro.xyz *.panen99pro.xyz *.rczhl.panen99pro.xyz
*.imap.pornsatr.com *.kaly.pornsatr.com *.mx2.pornsatr.com pornsatr.com *.pornsatr.com *.spam.pornsatr.com *.ww38.pornsatr.com *.www-1.pornsatr.com
*.imap2.snqbbs.cc snqbbs.cc *.snqbbs.cc *.ww38.snqbbs.cc
*.hostmaster.xolo.studio *.www.xolo.studio xolo.studio *.xolo.studio