76/100 SECURITY SCORE

Certificate Information

Subject
CN=iamtaylorsaylor.bio
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 01, 2025
Valid Until
March 01, 2026 36 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
ED:9C:4B:27:D8:BE:EF:65:68:F7:7A:ED:A0:BA:1D:56:F8:DF:C4:8F:DC:CE:90:FA:E0:B1:9B:85:5D:5E:28:5C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
comissarydeposit.com *.comissarydeposit.com *.chart.comissarydeposit.com *.dashboard.comissarydeposit.com *.reports.comissarydeposit.com *.superset.comissarydeposit.com

Other domains in certificate

*.analytic.belipulsa.bio belipulsa.bio *.belipulsa.bio *.flow.belipulsa.bio *.ml.belipulsa.bio
chinachefburbank.com *.chinachefburbank.com
*.click.email-stubhub.com email-stubhub.com *.email-stubhub.com *.leave.email-stubhub.com *.random.email-stubhub.com *.ww38.email-stubhub.com
fakedoctorsnotes.net *.fakedoctorsnotes.net
*.cdb.firecloud.tech *.cpanel.firecloud.tech *.cpcalendars.firecloud.tech *.cpcontacts.firecloud.tech *.ded-mc1.firecloud.tech *.dedi-discord.firecloud.tech *.dedi-mc.firecloud.tech *.dev.firecloud.tech *.discord.firecloud.tech *.dsc-bot.firecloud.tech *.dsc-bots.firecloud.tech *.eu1.firecloud.tech firecloud.tech *.firecloud.tech *.lego.firecloud.tech *.mail.firecloud.tech *.my.firecloud.tech *.na1.firecloud.tech *.na2.firecloud.tech *.panel.firecloud.tech *.paste.firecloud.tech *.private.firecloud.tech *.sql.firecloud.tech *.status.firecloud.tech *.us2.firecloud.tech *.webdisk.firecloud.tech *.webmail.firecloud.tech *.www.firecloud.tech
haydenscrossing.net *.haydenscrossing.net
hotelpalmamazas.com *.hotelpalmamazas.com
*.es.huainvideo.com *.fr.huainvideo.com huainvideo.com *.huainvideo.com *.pt.huainvideo.com *.ru.huainvideo.com *.sa.huainvideo.com
iamtaylorsaylor.bio *.iamtaylorsaylor.bio *.reports.iamtaylorsaylor.bio
*.amazon.martapakosc.pl *.links.martapakosc.pl martapakosc.pl *.martapakosc.pl *.rd.martapakosc.pl
mooneymakercasino.net *.mooneymakercasino.net *.ww38.mooneymakercasino.net
overlandadventurerentals.com *.overlandadventurerentals.com
*.g4activity.scarlet2.io *.pawtopia-demo.scarlet2.io *.pawtopia.scarlet2.io scarlet2.io *.scarlet2.io *.sgbcebu-demo.scarlet2.io
*.1c2213c1-4a50-4413-91d7-c859f5ddd865.smallstep.studio *.sitemap.smallstep.studio smallstep.studio *.smallstep.studio
vcdi.in *.vcdi.in
w2nhj8.com *.w2nhj8.com
*.ww38.zimmermansale.com zimmermansale.com *.zimmermansale.com