76/100 SECURITY SCORE

Certificate Information

Subject
CN=dubaihouseforsale.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 16, 2026
Valid Until
August 14, 2026 68 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:D0:62:31:DF:9B:36:59:16:7D:55:60:85:2A:23:33:C9:AD:AF:00:AA:1C:F2:D8:0F:1E:4B:94:6F:2D:75:B5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
designingthefrontier.com *.designingthefrontier.com *.admin.designingthefrontier.com *.api.designingthefrontier.com *.assets.designingthefrontier.com *.m7d6rs.designingthefrontier.com *.test.designingthefrontier.com

Other domains in certificate

amritoahar.com *.amritoahar.com *.ntpdqy.amritoahar.com
*.api.capitalsherpahub.biz *.app.capitalsherpahub.biz capitalsherpahub.biz *.capitalsherpahub.biz *.ibz0gr.capitalsherpahub.biz *.mail.capitalsherpahub.biz *.neatkqly.capitalsherpahub.biz *.r0wpzd.capitalsherpahub.biz
*.admin.dids.vc *.api.dids.vc *.app.dids.vc *.dev.dids.vc dids.vc *.dids.vc *.test.dids.vc *.www.dids.vc
dubaihouseforsale.com *.dubaihouseforsale.com *.m.dubaihouseforsale.com *.sitemap.dubaihouseforsale.com *.sitemaps.dubaihouseforsale.com
dying.life *.dying.life
*.admin.eththai.com *.demo.eththai.com eththai.com *.eththai.com
football-jerseys.co *.football-jerseys.co *.www.football-jerseys.co
*.api.hyphenlist.com *.app.hyphenlist.com *.backend.hyphenlist.com *.demo.hyphenlist.com hyphenlist.com *.hyphenlist.com *.staging.hyphenlist.com
*.cloud.lunarsouth.com lunarsouth.com *.lunarsouth.com *.rd.lunarsouth.com *.rds.lunarsouth.com *.rdweb.lunarsouth.com *.remote.lunarsouth.com *.www.lunarsouth.com
*.api.osijek.travel *.fzi3o7.osijek.travel *.mailer.osijek.travel *.members.osijek.travel osijek.travel *.osijek.travel *.staging.osijek.travel
*.api.sdtq-citamulia.org *.backup.sdtq-citamulia.org *.dev.sdtq-citamulia.org *.fyrazstaging.sdtq-citamulia.org sdtq-citamulia.org *.sdtq-citamulia.org *.staging.sdtq-citamulia.org *.uat.sdtq-citamulia.org
*.analytic.soundbets.com.au *.best-pet-profile.soundbets.com.au *.productpact.soundbets.com.au soundbets.com.au *.soundbets.com.au *.soundbets.soundbets.com.au *.staging.soundbets.com.au *.strongerliving.soundbets.com.au *.winningbets-aus.soundbets.com.au *.ww38.soundbets.com.au
*.cloud.xwmhpd.com *.karriere.xwmhpd.com *.m.xwmhpd.com *.rd.xwmhpd.com *.rds.xwmhpd.com *.rdweb.xwmhpd.com *.remote.xwmhpd.com *.wildcard.xwmhpd.com xwmhpd.com *.xwmhpd.com