Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=webyourelf.eu
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 03, 2026
Valid Until
June 01, 2026
37 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
35:F2:41:75:CA:8E:47:74:0C:1C:2A:70:91:07:2F:CE:77:21:FF:6F:5A:8C:10:80:B3:CF:59:F4:45:2D:33:EC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
sillas.com
*.sillas.com
*.de.sillas.com
2kday.co
*.2kday.co
active.co
*.active.co
*.blackrockinter.active.co
*.cialis.active.co
*.comune.active.co
*.cp.active.co
*.dropdown.active.co
*.email.active.co
*.g.active.co
*.mail.active.co
*.manager.active.co
*.mx.active.co
*.rarely.active.co
*.really.active.co
*.so.active.co
*.viagra.active.co
alamedacounty4h.org
*.alamedacounty4h.org
aniekanessiet.xyz
*.aniekanessiet.xyz
*.ww25.aniekanessiet.xyz
*.ww38.aniekanessiet.xyz
bangdot.com
*.bangdot.com
*.hostmaster.bangdot.com
*.old.bangdot.com
*.www.bangdot.com
blazemaster287.top
*.blazemaster287.top
*.rczhl.blazemaster287.top
craftables.co.uk
*.craftables.co.uk
*.forum.craftables.co.uk
dresden-ocl.org
*.dresden-ocl.org
*.ns1.dresden-ocl.org
*.api.ezwebcounter.com
ezwebcounter.com
*.ezwebcounter.com
*.rdweb.ezwebcounter.com
*.remote.ezwebcounter.com
*.www.ezwebcounter.com
ght.my
*.ght.my
*.randstadsourceri.ght.my
*.sn.ght.my
*.swipeni.ght.my
*.truthaboutwei.ght.my
*.votesunli.ght.my
*.ecuador.ola.de
*.fritz-k.ola.de
*.l.ola.de
*.la.ola.de
*.le.ola.de
*.maria.ola.de
ola.de
*.ola.de
*.un.ola.de
*.una.ola.de
opium.bio
*.opium.bio
redeoficios.org
*.redeoficios.org
refrigidaire.com
*.refrigidaire.com
*.ww25.refrigidaire.com
*.app.semuanya.com
*.atas.semuanya.com
*.biz.semuanya.com
*.dipermudah.semuanya.com
*.google.semuanya.com
*.kesehatan.semuanya.com
*.portfolio.semuanya.com
*.sayang.semuanya.com
*.secure.semuanya.com
semuanya.com
*.semuanya.com
*.sore.semuanya.com
webyourelf.eu
*.webyourelf.eu
xn--broset-3ya.de
*.xn--broset-3ya.de
zyloquest.co
*.zyloquest.co
Other domains in certificate