76/100 SECURITY SCORE

Certificate Information

Subject
CN=alfanetfibra.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
64:10:3A:75:BD:87:84:C4:48:D9:06:72:BF:1E:5E:85:F8:BC:53:48:3D:8B:79:60:3E:E8:59:FB:AF:1F:53:20
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bakhtyari.com *.bakhtyari.com *.api.bakhtyari.com

Other domains in certificate

*.6vbldb2u.7dak.vip 7dak.vip *.7dak.vip *.861799.7dak.vip *.998857.7dak.vip *.alumni.7dak.vip *.blxzei.7dak.vip *.cms.7dak.vip *.communications.7dak.vip *.ec.7dak.vip *.esm.7dak.vip *.fsk3982.7dak.vip *.giving.7dak.vip *.hajim.7dak.vip *.library.7dak.vip *.lle.7dak.vip *.n121rj9.7dak.vip *.newark.7dak.vip *.oc.7dak.vip *.olwfue.7dak.vip *.prnfafeeb38.7dak.vip *.ps.7dak.vip *.pvt1033010.7dak.vip *.pvt1071834.7dak.vip *.rsvlip.7dak.vip *.sas.7dak.vip *.son.7dak.vip *.tbaywa.7dak.vip *.tohqiw.7dak.vip *.toment.7dak.vip *.ur.7dak.vip *.urmc.7dak.vip *.web-sitemap.7dak.vip *.weremember.7dak.vip *.yigizf.7dak.vip *.zaaqnn.7dak.vip
*.9.91poorn.com 91poorn.com *.91poorn.com *.wiki.91poorn.com *.ww38.91poorn.com
alfanetfibra.com *.alfanetfibra.com *.atendimento.alfanetfibra.com *.ftp.alfanetfibra.com
baristasethiopia.com *.baristasethiopia.com *.cpcalendars.baristasethiopia.com
dietadisociada.info *.dietadisociada.info *.ww17.dietadisociada.info
hescosc.com *.hescosc.com
*.l25.leadership14.site *.l6.leadership14.site leadership14.site *.leadership14.site *.w16.leadership14.site
piwowar.com *.piwowar.com *.ww16.piwowar.com
*.60090.rapidforum.com *.72.rapidforum.com rapidforum.com *.rapidforum.com
sa77.pro *.sa77.pro
sdkmysflz.com *.sdkmysflz.com
*.demo.sexviet123.xyz sexviet123.xyz *.sexviet123.xyz
skipthewater.com *.skipthewater.com
tagungsorte.com *.tagungsorte.com
*.912273f9-a796-4e7c-897f-baa321ee6efb.thelordgod.love thelordgod.love *.thelordgod.love
ufa988.info *.ufa988.info
*.billing.volpac.com *.comune.volpac.com *.stage.volpac.com volpac.com *.volpac.com *.ww38.volpac.com