Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=beapplegyn.com.br
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 07, 2026
Valid Until
May 08, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
10:42:FD:B6:FB:86:30:F4:DF:01:B9:51:AE:FA:BB:DF:F1:36:E7:74:B3:D7:F8:AF:8D:28:D7:F9:FD:77:AB:E1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
norma.net *.norma.net *.analytics.norma.net *.beta.norma.net *.cali.norma.net *.cenbi.norma.net *.com.norma.net *.prod.norma.net *.report.norma.net *.sandbox.norma.net *.ws.norma.net *.wss.norma.net *.ww38.norma.net

Other domains in certificate

3605yhj.top *.3605yhj.top *.kwid9.3605yhj.top
beapplegyn.com.br *.beapplegyn.com.br
bloggeer.com *.bloggeer.com *.ebay.bloggeer.com *.ww25.bloggeer.com
*.aau79.clairecoghlan.com clairecoghlan.com *.clairecoghlan.com *.hsa12.clairecoghlan.com
*.backend.dsmc.it dsmc.it *.dsmc.it *.metrics.dsmc.it
*.bf.dyttv.com dyttv.com *.dyttv.com
*.autoconfig.g59merchandise.store g59merchandise.store *.g59merchandise.store *.www.g59merchandise.store
jonathanbrewer.com *.jonathanbrewer.com *.sitemaps.jonathanbrewer.com
*.c4e4daaf-05fd-4397-b1d1-0abcfacfc81b.petratrucoff.com petratrucoff.com *.petratrucoff.com *.wildcard.petratrucoff.com
*.ad76ce29-0d98-4a12-9e25-5c98cb1ad2c5.pgsoft191.sbs *.intranet.pgsoft191.sbs pgsoft191.sbs *.pgsoft191.sbs *.test.pgsoft191.sbs
qfutol.online *.qfutol.online
*.analyze.reattiva.it *.demo.reattiva.it reattiva.it *.reattiva.it
*.superset.telefonoerotico.com telefonoerotico.com *.telefonoerotico.com
woss.store *.woss.store
*.cdn.xxxporn.net *.cloud.xxxporn.net *.email.xxxporn.net *.extmail.xxxporn.net *.gkurhrelay.xxxporn.net *.jp.xxxporn.net *.m.xxxporn.net *.mail.xxxporn.net *.media.xxxporn.net *.mx.xxxporn.net *.out.xxxporn.net *.outbox.xxxporn.net *.pop3.xxxporn.net *.post.xxxporn.net *.remote.xxxporn.net *.server.xxxporn.net *.sexmax.xxxporn.net *.sitemaps.xxxporn.net *.smtp.xxxporn.net *.smtps.xxxporn.net *.uaxjhmx1.xxxporn.net *.webmai.xxxporn.net *.website.xxxporn.net *.ww1.xxxporn.net *.ww17.xxxporn.net *.ww6.xxxporn.net *.www4.xxxporn.net xxxporn.net *.xxxporn.net *.youx.xxxporn.net