Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=viewsofnepal.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026 71 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:E6:BD:30:80:46:7C:3F:B5:68:06:50:8D:0B:1C:EE:30:D7:FC:C2:6E:BD:50:91:13:00:2A:33:B0:38:31:75
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
winerapp.com *.winerapp.com *.blog.winerapp.com *.dev.winerapp.com *.djfsgzbw.winerapp.com *.gateway.winerapp.com *.home.winerapp.com *.mail.winerapp.com *.mobile.winerapp.com *.news.winerapp.com *.paul.winerapp.com *.web.winerapp.com *.wp.winerapp.com

Other domains in certificate

1153clx301.top *.1153clx301.top *.93241f0023.1153clx301.top
*.api.benj.it benj.it *.benj.it
*.beta.brimbeat.com brimbeat.com *.brimbeat.com *.extranet.brimbeat.com *.intranet.brimbeat.com *.m.brimbeat.com *.mx1.brimbeat.com *.web.brimbeat.com
cbc.soccer *.cbc.soccer *.www.cbc.soccer
*.bbs.elink.net elink.net *.elink.net *.fernandez.elink.net *.hotspot.elink.net *.link.elink.net *.mcrdc.elink.net *.prod.elink.net *.show.elink.net *.sys.elink.net *.tynelink.elink.net *.ww16.elink.net *.ww2.elink.net *.ww25.elink.net
gymdays.club *.gymdays.club *.ww16.gymdays.club
horn.tv *.horn.tv *.mx.horn.tv *.www.horn.tv
*.2ww.ksbitv.com *.ask.ksbitv.com *.citrix.ksbitv.com *.hostmaster.ksbitv.com *.imap.ksbitv.com ksbitv.com *.ksbitv.com *.mail.ksbitv.com *.media.ksbitv.com *.owa.ksbitv.com *.random.ksbitv.com *.sfbw.ksbitv.com *.sitemap.ksbitv.com *.sitemaps.ksbitv.com *.smtp.ksbitv.com *.stage.ksbitv.com *.ww25.ksbitv.com *.ww38.ksbitv.com *.www.ksbitv.com *.yjs.ksbitv.com
*.0cb3826c-036a-4564-b79b-421dfcba690e.lumyara.org *.78c7d2f5-be9b-40b8-8eee-0a65fc69df1e.lumyara.org *.api.lumyara.org *.app.lumyara.org *.dev.lumyara.org lumyara.org *.lumyara.org *.mailin1.lumyara.org *.new.lumyara.org *.sitemaps.lumyara.org *.smtpauth.lumyara.org
*.8kisqc.totoslot138jp.cyou totoslot138jp.cyou *.totoslot138jp.cyou
viewsofnepal.com *.viewsofnepal.com
*.it.xhm.it xhm.it *.xhm.it