76/100 SECURITY SCORE

Certificate Information

Subject
CN=click-tt.site
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 28, 2026
Valid Until
July 27, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CC:2C:A9:2B:0F:9E:6D:D4:6C:92:B4:1F:D8:D8:A7:8D:0E:76:66:2A:44:B1:A1:1D:DE:BD:CB:11:B8:D7:D1:06
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
paymenthub.cc *.paymenthub.cc *.ftp.paymenthub.cc *.sitemaps.paymenthub.cc *.webdisk.paymenthub.cc *.ww25.paymenthub.cc *.ww38.paymenthub.cc *.www.paymenthub.cc

Other domains in certificate

accutranslate.co.uk *.accutranslate.co.uk *.mail.accutranslate.co.uk
adunoaduno.it *.adunoaduno.it
archivd.net *.archivd.net *.docs.archivd.net *.gateway.archivd.net *.video.archivd.net *.ww38.archivd.net *.www.archivd.net
betkoliks.biz *.betkoliks.biz
cascadiapilates.com *.cascadiapilates.com *.ww25.cascadiapilates.com
click-tt.site *.click-tt.site
coeebridgefinancial.com *.coeebridgefinancial.com
green.buzz *.green.buzz *.steel.green.buzz
gslglass.com *.gslglass.com *.ww25.gslglass.com
hkz.com.au *.hkz.com.au *.ww38.hkz.com.au
hollyjames.studio *.hollyjames.studio
*.ftp.kingcom.studio kingcom.studio *.kingcom.studio *.mail.kingcom.studio *.pop.kingcom.studio *.sitemap.kingcom.studio *.sitemaps.kingcom.studio *.smtp.kingcom.studio *.www.kingcom.studio
*.demo.lavaya.network lavaya.network *.lavaya.network
metakomunikaty.pl *.metakomunikaty.pl
*.cpanel.nokiae50.info *.hostmaster.nokiae50.info *.magento2.nokiae50.info *.mail.nokiae50.info nokiae50.info *.nokiae50.info *.remote.nokiae50.info *.webdisk.nokiae50.info *.webmail.nokiae50.info
*.2a4o4o4ok6.play-pan.buzz *.2a4o4o6d.play-pan.buzz *.414o4o4ok6.play-pan.buzz *.414o4o6d.play-pan.buzz *.6m4o4o4o4o.play-pan.buzz *.6m4o4ot8.play-pan.buzz *.b24o4o4ok6.play-pan.buzz *.b24o4o87.play-pan.buzz *.b24o4ot8.play-pan.buzz *.n04o4o87.play-pan.buzz play-pan.buzz *.play-pan.buzz
startearn.site *.startearn.site
*.a.teamtownsport.com *.buvoaww38.teamtownsport.com *.dma.teamtownsport.com *.smtp.teamtownsport.com teamtownsport.com *.teamtownsport.com *.webdisk.teamtownsport.com *.www.teamtownsport.com
transport-martrans.pl *.transport-martrans.pl
*.qa.trustworthybook.com trustworthybook.com *.trustworthybook.com