76/100 SECURITY SCORE

Certificate Information

Subject
CN=designandforms.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 15, 2026
Valid Until
April 15, 2026 63 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CA:DF:18:20:18:FA:B5:F7:93:F6:3B:D8:98:DE:61:3E:44:47:FB:AA:5D:07:A3:99:49:00:39:01:7E:F7:D1:45
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
freevirusremoval.com *.freevirusremoval.com *.ads.freevirusremoval.com *.blah.freevirusremoval.com *.demo.freevirusremoval.com *.dev.freevirusremoval.com *.email.freevirusremoval.com *.fashion.freevirusremoval.com *.forum.freevirusremoval.com *.foto.freevirusremoval.com *.free.freevirusremoval.com *.icm.freevirusremoval.com *.maine.freevirusremoval.com *.pool.freevirusremoval.com *.staging.freevirusremoval.com *.store.freevirusremoval.com

Other domains in certificate

adforgeinc.com *.adforgeinc.com *.analytics.adforgeinc.com *.as.adforgeinc.com *.c.adforgeinc.com *.c7.adforgeinc.com *.k8s.adforgeinc.com *.my2.adforgeinc.com *.pc.adforgeinc.com *.ua-dev.adforgeinc.com *.update.adforgeinc.com *.ws.adforgeinc.com *.wss.adforgeinc.com *.ww25.adforgeinc.com
designandforms.com *.designandforms.com *.mail.designandforms.com
*.comune.guenoun.com *.globalprotect.guenoun.com guenoun.com *.guenoun.com *.ildcard.guenoun.com *.mail.guenoun.com
*.aaa.missingthemoney.com *.domaindnszones.missingthemoney.com missingthemoney.com *.missingthemoney.com *.www.missingthemoney.com
*.a.thefappening.site *.blog.thefappening.site *.book.thefappening.site *.de.thefappening.site *.hostmaster.thefappening.site *.mx.thefappening.site *.mx1.thefappening.site *.mysql.thefappening.site *.ns.thefappening.site *.sitemap.thefappening.site *.test.thefappening.site thefappening.site *.thefappening.site *.ww38.thefappening.site
thegioicaytrong.info *.thegioicaytrong.info *.ww25.thegioicaytrong.info *.ww38.thegioicaytrong.info
*.incesto.verhentai.online *.nalgona.verhentai.online *.pornomaduras.verhentai.online *.puro-porno.verhentai.online *.sexocasero.verhentai.online *.veranime.verhentai.online verhentai.online *.verhentai.online *.verhentai.verhentai.online
webapp4ypu.eu *.webapp4ypu.eu *.ww38.webapp4ypu.eu
*.app.yourgears.shop *.bigboss.yourgears.shop *.boss.yourgears.shop *.dev.yourgears.shop *.home.yourgears.shop *.m.yourgears.shop *.mobile.yourgears.shop *.news.yourgears.shop *.wap.yourgears.shop *.web.yourgears.shop *.wildcard.yourgears.shop *.ww25.yourgears.shop *.www.yourgears.shop yourgears.shop *.yourgears.shop