Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=disini-cuan.city
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9E:2B:91:3E:9D:84:21:77:E9:F2:49:1C:79:12:D9:13:FE:7B:5A:5C:19:B3:65:52:9E:0E:9B:CE:96:60:A6:E4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sofyan.net
*.sofyan.net
*.blog.sofyan.net
*.com.sofyan.net
*.cpanel.sofyan.net
*.cpcontacts.sofyan.net
*.elearning.sofyan.net
*.gaji.sofyan.net
*.gps.sofyan.net
*.modelbatik.sofyan.net
*.pkbi.sofyan.net
*.rutgers.sofyan.net
*.rutgers2.sofyan.net
*.rutgers3.sofyan.net
*.sitemaps.sofyan.net
*.support.sofyan.net
*.tb.sofyan.net
*.tugasimk.sofyan.net
*.tugaswebsql.sofyan.net
513198.academy
*.513198.academy
*.academy.513198.academy
*.api.astroclinic.com
*.assets.astroclinic.com
astroclinic.com
*.astroclinic.com
*.blog.astroclinic.com
*.emv1.astroclinic.com
*.staging.astroclinic.com
*.test.astroclinic.com
*.ww16.astroclinic.com
comarcas.com
*.comarcas.com
*.emv1.comarcas.com
*.ww11.comarcas.com
*.ww25.comarcas.com
*.ww38.comarcas.com
disini-cuan.city
*.disini-cuan.city
easypita.com
*.easypita.com
*.hostmaster.informaljobs.com
informaljobs.com
*.informaljobs.com
*.m.informaljobs.com
*.vpn.informaljobs.com
*.dash.printuidcard.xyz
*.dc-b71338d2e303.printuidcard.xyz
*.flowise.printuidcard.xyz
*.hhvjvghcmhgfhfkvc.printuidcard.xyz
*.printcard.printuidcard.xyz
*.printuid.printuidcard.xyz
*.printuidcard.printuidcard.xyz
printuidcard.xyz
*.printuidcard.xyz
*.qa.printuidcard.xyz
*.visualize.printuidcard.xyz
*.ww1.printuidcard.xyz
*.xyz.printuidcard.xyz
*.m0.reducll.com
*.m1.reducll.com
*.m10.reducll.com
*.m11.reducll.com
*.m12.reducll.com
*.m15.reducll.com
*.m16.reducll.com
*.m17.reducll.com
*.m22.reducll.com
*.m24.reducll.com
*.m26.reducll.com
*.m28.reducll.com
*.m31.reducll.com
*.m32.reducll.com
*.m33.reducll.com
*.m42.reducll.com
*.m7.reducll.com
*.m8.reducll.com
reducll.com
*.reducll.com
*.dev.yeahiptv.pro
*.ww25.yeahiptv.pro
yeahiptv.pro
*.yeahiptv.pro
*.ftp.zanzibarbutterflycentre.com
*.mail.zanzibarbutterflycentre.com
*.pop.zanzibarbutterflycentre.com
*.smtp.zanzibarbutterflycentre.com
*.ww25.zanzibarbutterflycentre.com
zanzibarbutterflycentre.com
*.zanzibarbutterflycentre.com
Other domains in certificate