76/100 SECURITY SCORE

Certificate Information

Subject
CN=congdongsex.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 25, 2026
Valid Until
July 24, 2026 48 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
73:D1:A4:61:E0:CE:FE:6D:E8:67:F8:95:CD:B1:55:0D:BE:2B:68:C4:EE:BD:67:A8:AA:7A:38:87:7C:F2:56:CF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

86 domains
dnsmanagement.it *.dnsmanagement.it *.admin.dnsmanagement.it *.api.dnsmanagement.it *.app.dnsmanagement.it *.cicd.dnsmanagement.it *.data.dnsmanagement.it *.demo.dnsmanagement.it *.superset.dnsmanagement.it

Other domains in certificate

aiuu8.cc *.aiuu8.cc *.ww38.aiuu8.cc
arredoperalberghi.it *.arredoperalberghi.it *.relay.arredoperalberghi.it
arveguru.eu *.arveguru.eu
blissair.com.au *.blissair.com.au
bodysize.eu *.bodysize.eu
bonusfojidiu.com *.bonusfojidiu.com
chain-champ.com *.chain-champ.com *.sitemaps.chain-champ.com *.www.chain-champ.com
*.8eac8e4e-190c-4f3e-b9be-8f1181738e49.congdongsex.net congdongsex.net *.congdongsex.net *.play.congdongsex.net
dootv.live *.dootv.live *.random.dootv.live
flets-e.com *.flets-e.com *.ww17.flets-e.com
*.dc-ac2700223673.foodeli.online foodeli.online *.foodeli.online *.hostmaster.foodeli.online
hj33335.com *.hj33335.com *.ww17.hj33335.com
leatherworld.com.au *.leatherworld.com.au
nasdcar.com *.nasdcar.com *.random.nasdcar.com *.ww25.nasdcar.com
*.admin.negozigiocattoli.com *.api.negozigiocattoli.com *.app.negozigiocattoli.com *.argo.negozigiocattoli.com *.backend.negozigiocattoli.com *.bi.negozigiocattoli.com negozigiocattoli.com *.negozigiocattoli.com *.reporting.negozigiocattoli.com *.workflow.negozigiocattoli.com
ouest-orages.org *.ouest-orages.org
*.32.provide.finance *.app.provide.finance *.mail.provide.finance provide.finance *.provide.finance *.remote.provide.finance *.shop.provide.finance *.store.provide.finance
registersecutely.com *.registersecutely.com
sexstory.co.uk *.sexstory.co.uk
suefairview.com *.suefairview.com *.www.suefairview.com
*.dan.valuecareers.com valuecareers.com *.valuecareers.com *.www.valuecareers.com
*.random.vipmascotas.com vipmascotas.com *.vipmascotas.com
walmax.online *.walmax.online