Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=win19.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 25, 2026
Valid Until
July 24, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
ED:09:47:F6:61:A8:0F:0E:41:72:16:CA:E7:3A:C9:E1:90:90:37:E8:0E:FB:A6:2F:CF:31:A8:EF:3B:A4:D3:19
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
wcbgi.auction *.wcbgi.auction

Other domains in certificate

11160.sx *.11160.sx
apes.live *.apes.live *.do.apes.live
baby-carriers-downunder.com *.baby-carriers-downunder.com *.dns.baby-carriers-downunder.com *.hostmaster.baby-carriers-downunder.com *.mail.baby-carriers-downunder.com *.mx7.baby-carriers-downunder.com *.ww25.baby-carriers-downunder.com *.ww38.baby-carriers-downunder.com *.www.baby-carriers-downunder.com
beyondbending.com *.beyondbending.com *.webmail.beyondbending.com
*.courier.guy.co.za guy.co.za *.guy.co.za *.hostmaster.guy.co.za *.ww25.guy.co.za
*.cafehatton.lifeisaplay.com *.cleancarpro.lifeisaplay.com *.couragehub.lifeisaplay.com *.financialfreedomquest.lifeisaplay.com lifeisaplay.com *.lifeisaplay.com *.opencitydance.lifeisaplay.com *.paladincommunications.lifeisaplay.com *.reclaimingsales.lifeisaplay.com
marchmanassociates.com *.marchmanassociates.com
mathapy.com *.mathapy.com
medizin-service.com *.medizin-service.com
modelify.live *.modelify.live
modulardress.com *.modulardress.com
mylifegate.com *.mylifegate.com
*.autodiscover.pbbpl.co.in pbbpl.co.in *.pbbpl.co.in
prompts.bible *.prompts.bible
qqhnqvj592.vip *.qqhnqvj592.vip
reachnetrevenuehub.com *.reachnetrevenuehub.com
recyclage-sterling.com *.recyclage-sterling.com
rockabyebooks.com *.rockabyebooks.com
roofingprocess.com *.roofingprocess.com
samsunguae.com *.samsunguae.com
satinlinedhoodie.com *.satinlinedhoodie.com
seller.bargains *.seller.bargains
shayariboss.com *.shayariboss.com
siamviking.com *.siamviking.com
syncpulseplatform.xyz *.syncpulseplatform.xyz
trymastra.one *.trymastra.one
vacationclarityhub.live *.vacationclarityhub.live
*.files.win19.org *.jobuj.win19.org *.list.win19.org win19.org *.win19.org
wineflush.com *.wineflush.com
wyttl.auction *.wyttl.auction
xn--sjt072h4nggqe.com *.xn--sjt072h4nggqe.com
yashdongre.com *.yashdongre.com