76/100 SECURITY SCORE

Certificate Information

Subject
CN=dofiga.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 07, 2026
Valid Until
May 08, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A3:07:68:3A:AD:2A:7A:00:48:9E:A7:FC:88:AF:BF:B0:BE:CF:8A:A3:55:CE:54:09:E4:33:B5:FF:02:FC:6C:36
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
dofiga.com *.dofiga.com *.mx.dofiga.com

Other domains in certificate

*.acculance.afandi.store afandi.store *.afandi.store *.clindalab.afandi.store *.odoo.afandi.store *.zaid.afandi.store
afgeresearch.org *.afgeresearch.org
applefixes.com *.applefixes.com *.cpanel.applefixes.com *.mail.applefixes.com *.pinoye.applefixes.com *.webmail.applefixes.com
audiolinux.com *.audiolinux.com *.feral.audiolinux.com
bagnol.com *.bagnol.com *.firewall.bagnol.com
dhv.au *.dhv.au *.gdc.dhv.au
healthandfitnesswithch.online *.healthandfitnesswithch.online
lindlife.store *.lindlife.store *.store.lindlife.store
*.com.mittallawfirm.com *.crm.mittallawfirm.com *.csd.mittallawfirm.com *.erp.mittallawfirm.com mittallawfirm.com *.mittallawfirm.com
*.dev.oetama.com oetama.com *.oetama.com *.test.oetama.com *.ww25.oetama.com
qmbet30.com *.qmbet30.com
*.autoconfig.rtpcnd.club rtpcnd.club *.rtpcnd.club *.www.rtpcnd.club
*.mail.searchcleveland.com searchcleveland.com *.searchcleveland.com *.sitemap.searchcleveland.com *.www.searchcleveland.com
*.1a26fde9-92f0-431e-90d5-b4703f81c200.simsons-kinderseiten.de *.app.simsons-kinderseiten.de *.c3.simsons-kinderseiten.de *.cc5fc83f-ac7a-409f-aba9-77e870814ef1.simsons-kinderseiten.de *.chart.simsons-kinderseiten.de *.cloud.simsons-kinderseiten.de *.czeglhtd.simsons-kinderseiten.de *.kartenbestellung.simsons-kinderseiten.de *.m.simsons-kinderseiten.de *.mail.simsons-kinderseiten.de *.msk.simsons-kinderseiten.de *.rd.simsons-kinderseiten.de *.rds.simsons-kinderseiten.de *.rdweb.simsons-kinderseiten.de *.remote.simsons-kinderseiten.de simsons-kinderseiten.de *.simsons-kinderseiten.de *.sitemap.simsons-kinderseiten.de *.sommerferien.simsons-kinderseiten.de *.tuovsrd.simsons-kinderseiten.de *.ww25.simsons-kinderseiten.de *.www.simsons-kinderseiten.de
*.demo.wann.it wann.it *.wann.it
*.analytics.wealthcreatorsindia.com *.ci.wealthcreatorsindia.com *.random.wealthcreatorsindia.com wealthcreatorsindia.com *.wealthcreatorsindia.com
*.bjfykjfzyxgsdxe.zhituishi.com *.szsqlfkjyxgsojf.zhituishi.com *.tvpgzkcqydjfwyxgs.zhituishi.com *.www.zhituishi.com zhituishi.com *.zhituishi.com *.zssjxfsyxgsc8b.zhituishi.com