91/100 SECURITY SCORE

Certificate Information

Subject
CN=eggena.website
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 04, 2026
Valid Until
June 02, 2026 40 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:0B:3B:B6:FB:A3:AA:BD:D7:CC:31:EB:CC:5E:F5:59:FE:F3:F0:A1:C8:E0:23:0C:A5:DD:F4:C5:8C:B0:1D:A8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(), midi=(), sync-xhr=(); +6 more
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
eggena.website *.eggena.website *.sitemaps.eggena.website *.www.eggena.website

Other domains in certificate

*.diaz-success.esocash.com esocash.com *.esocash.com *.farrell-maybe.esocash.com *.ww25.esocash.com *.www.esocash.com
*.easyfuture.findonline.org findonline.org *.findonline.org *.sitemap.findonline.org *.staging.findonline.org
*.admin.gossipgazespot.live *.api.gossipgazespot.live *.app.gossipgazespot.live gossipgazespot.live *.gossipgazespot.live *.intranet.gossipgazespot.live *.portal.gossipgazespot.live *.shop.gossipgazespot.live
*.127bffaf-c4a5-4a02-8f4c-b336cf4ac9fb.istanbulejder1.xyz *.2194l.istanbulejder1.xyz *.29f16568-57fd-4f75-9463-c787e338cf8b.istanbulejder1.xyz *.39ir6.istanbulejder1.xyz *.3ugcn.istanbulejder1.xyz *.4ec2a099-fb85-4b7a-b218-da5b13e8edec.istanbulejder1.xyz *.525v4.istanbulejder1.xyz *.5a113ce6-5e54-4c2e-9f2d-5d7e2d83f37b.istanbulejder1.xyz *.5qutp.istanbulejder1.xyz *.6188fec9-7c0e-47ae-aa33-24ed9297fe9a.istanbulejder1.xyz *.7q1.istanbulejder1.xyz *.88007a1d-46e4-46b3-9e13-2aa4188436bc.istanbulejder1.xyz *.95lw2.istanbulejder1.xyz *.ac56e4d4-e59e-4162-a755-502455c183a0.istanbulejder1.xyz *.bnbod.istanbulejder1.xyz *.cpanel.istanbulejder1.xyz *.d.istanbulejder1.xyz *.d6fc135a-f74f-4b99-b1ef-2ab28ec6f07a.istanbulejder1.xyz *.gtjbhy6iui.istanbulejder1.xyz *.hrka1.istanbulejder1.xyz *.id9.istanbulejder1.xyz istanbulejder1.xyz *.istanbulejder1.xyz *.kac0t.istanbulejder1.xyz *.kwid9.istanbulejder1.xyz *.l0r4m.istanbulejder1.xyz *.l2aa8.istanbulejder1.xyz *.me7q1.istanbulejder1.xyz *.msugqid9.istanbulejder1.xyz *.osc36.istanbulejder1.xyz *.pp4gk.istanbulejder1.xyz *.pwb3b.istanbulejder1.xyz *.rkuvx.istanbulejder1.xyz *.s28s9.istanbulejder1.xyz *.vhakn.istanbulejder1.xyz *.vizaseq.istanbulejder1.xyz *.webmail.istanbulejder1.xyz *.xbh6h.istanbulejder1.xyz *.y6iui.istanbulejder1.xyz *.z44ag.istanbulejder1.xyz
matjarona.it.com *.matjarona.it.com *.www.matjarona.it.com
pesowifi.net *.pesowifi.net *.w.pesowifi.net *.w25.pesowifi.net *.ww25.pesowifi.net
*.api.pesto.best *.assets.pesto.best *.demo.pesto.best *.hostmaster.pesto.best *.imas.pesto.best *.pasilioum.pesto.best pesto.best *.pesto.best *.test.pesto.best *.www.pesto.best *.xvnflimas.pesto.best
*.gqevimobile.vodacomconnectu.co.za *.live.vodacomconnectu.co.za *.mobile.vodacomconnectu.co.za *.smtp.vodacomconnectu.co.za vodacomconnectu.co.za *.vodacomconnectu.co.za *.ww.vodacomconnectu.co.za *.www.vodacomconnectu.co.za