76/100 SECURITY SCORE

Certificate Information

Subject
CN=gameallo.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 28, 2026
Valid Until
August 26, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4C:A7:66:66:A6:D9:20:60:FC:87:6F:87:3F:03:F2:EF:58:95:5F:26:70:93:00:C1:14:37:D6:E2:9A:7F:25:BB
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
gameallo.com *.gameallo.com *.mail.gameallo.com

Other domains in certificate

69118.club *.69118.club
77373952.top *.77373952.top
apk-m.com *.apk-m.com
beleebala.com *.beleebala.com
courtera.com *.courtera.com *.nextcloud.courtera.com
*.dashboard.dewa505jp.monster dewa505jp.monster *.dewa505jp.monster
*.713fa1c1-ca27-43a7-8382-379f711fe2d2.enopeckeseal.in *.admin.enopeckeseal.in *.app.enopeckeseal.in *.backup.enopeckeseal.in *.c2e19022-455d-44a0-98e2-9dc957b5b435.enopeckeseal.in *.cp.enopeckeseal.in *.dbbnxzeijnwebmail.enopeckeseal.in enopeckeseal.in *.enopeckeseal.in *.isp.enopeckeseal.in *.m.enopeckeseal.in *.mail.enopeckeseal.in *.new.enopeckeseal.in *.panel.enopeckeseal.in *.qqbhladmin.enopeckeseal.in *.random.enopeckeseal.in *.remote.enopeckeseal.in *.vpn.enopeckeseal.in *.webmail.enopeckeseal.in *.www.enopeckeseal.in
exterior-facade-728894225.click *.exterior-facade-728894225.click
gamelawsuit.com *.gamelawsuit.com *.nfnl24.gamelawsuit.com
gameperformance.digital *.gameperformance.digital *.rustore.gameperformance.digital
*.cloud.glowingboardbrite.com *.duoqu.glowingboardbrite.com *.ejdlnkmy.glowingboardbrite.com *.ftp.glowingboardbrite.com glowingboardbrite.com *.glowingboardbrite.com *.ivtwynew.glowingboardbrite.com *.m.glowingboardbrite.com *.mail.glowingboardbrite.com *.qianbao.glowingboardbrite.com *.rd.glowingboardbrite.com *.remote.glowingboardbrite.com *.sitemap.glowingboardbrite.com *.ww1.glowingboardbrite.com *.ynqwademo.glowingboardbrite.com
*.adikuw.h2stack.tech *.dupa.h2stack.tech *.edese.h2stack.tech h2stack.tech *.h2stack.tech *.igadif.h2stack.tech *.izis.h2stack.tech *.pahogo.h2stack.tech *.random.h2stack.tech *.reve.h2stack.tech
littlekapten.com *.littlekapten.com
ljmhospitality.com *.ljmhospitality.com
ljqyf.vip *.ljqyf.vip
locateshipscience.info *.locateshipscience.info
maib.pro *.maib.pro
mailsvtn.info *.mailsvtn.info
morvlimited.com *.morvlimited.com
newatvfund.com *.newatvfund.com
realtyrisetop.com *.realtyrisetop.com
realtyshieldtop.com *.realtyshieldtop.com