76/100 SECURITY SCORE

Certificate Information

Subject
CN=farshadmp.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 29, 2026
Valid Until
July 28, 2026 35 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0D:A9:B7:65:A5:41:AB:4C:79:E5:E3:CB:A5:05:43:83:CD:E9:92:5A:46:59:39:55:DF:F2:02:02:27:90:81:A6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
draftporn.com *.draftporn.com *.a.draftporn.com *.acc.draftporn.com *.ns2.draftporn.com *.old.draftporn.com *.sms.draftporn.com *.team.draftporn.com *.video.draftporn.com *.wwe.draftporn.com

Other domains in certificate

aemede168.com *.aemede168.com
approver.au *.approver.au *.random.approver.au
auwebhosting.com.au *.auwebhosting.com.au *.www.auwebhosting.com.au
*.canalrcn.casadelosfamoso.com casadelosfamoso.com *.casadelosfamoso.com *.cdn.casadelosfamoso.com
charlesthyrwitt.com *.charlesthyrwitt.com *.ww25.charlesthyrwitt.com
defendwomen.com *.defendwomen.com *.ww16.defendwomen.com *.ww17.defendwomen.com *.ww38.defendwomen.com
dlrevamp.com *.dlrevamp.com *.ww16.dlrevamp.com *.ww38.dlrevamp.com *.www.dlrevamp.com
*.0cf58e49-31d1-4492-9cbc-c086d46586c3.farshadmp.xyz *.1d817.farshadmp.xyz *.87ab5.farshadmp.xyz *.admin.farshadmp.xyz *.api.farshadmp.xyz *.dn930.farshadmp.xyz farshadmp.xyz *.farshadmp.xyz *.kac0t.farshadmp.xyz *.mp7tf.farshadmp.xyz *.okhrqmp7tf.farshadmp.xyz
frenchbulldogs.com *.frenchbulldogs.com *.ww25.frenchbulldogs.com
grandhaber.com *.grandhaber.com *.ww38.grandhaber.com
*.crm.implantescocleares.com implantescocleares.com *.implantescocleares.com *.ww1.implantescocleares.com *.ww16.implantescocleares.com *.ww25.implantescocleares.com *.ww38.implantescocleares.com
*.checkout.lovediamond.it lovediamond.it *.lovediamond.it *.mx.lovediamond.it *.www.lovediamond.it *.xylgphostmaster.lovediamond.it
scooterround.com *.scooterround.com *.ww16.scooterround.com *.ww25.scooterround.com *.ww38.scooterround.com
*.cpcalendars.stevesoutfit.com stevesoutfit.com *.stevesoutfit.com *.ww25.stevesoutfit.com
*.client.user.com.au *.mz.user.com.au *.scd.user.com.au user.com.au *.user.com.au
whittoncomputers.co.uk *.whittoncomputers.co.uk
*.app.xn--solarat-yxa28d.com *.cloud.xn--solarat-yxa28d.com *.gateway.xn--solarat-yxa28d.com *.mmmmhvpn2.xn--solarat-yxa28d.com *.nwsld8.xn--solarat-yxa28d.com *.ts.xn--solarat-yxa28d.com xn--solarat-yxa28d.com *.xn--solarat-yxa28d.com