76/100 SECURITY SCORE

Certificate Information

Subject
CN=deming.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 16, 2026
Valid Until
August 14, 2026 74 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
65:5C:3C:81:42:63:BC:E2:90:4E:B3:2A:A9:7D:8B:31:A7:01:BB:96:69:D3:5E:BB:C3:F4:E1:44:E9:A6:70:42
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

86 domains
onlinearabicfoods.com *.onlinearabicfoods.com *.8fe9c9d4-a2e9-4cda-9050-91fb8adbc99e.onlinearabicfoods.com *.api.onlinearabicfoods.com *.backup.onlinearabicfoods.com *.comcomb8adbc99e.onlinearabicfoods.com *.demo.onlinearabicfoods.com *.dev.onlinearabicfoods.com *.docs.onlinearabicfoods.com *.external.onlinearabicfoods.com *.hrkal4.onlinearabicfoods.com *.members.onlinearabicfoods.com *.my.onlinearabicfoods.com *.new.onlinearabicfoods.com *.portal.onlinearabicfoods.com *.share.onlinearabicfoods.com *.staging.onlinearabicfoods.com *.test.onlinearabicfoods.com *.testing.onlinearabicfoods.com

Other domains in certificate

*.api.deming.it *.backend.deming.it deming.it *.deming.it *.hostmaster.deming.it *.ws.deming.it *.wss.deming.it
*.42b1cb04-cb64-4e85-8aff-16dbde023b4a.frootloopog.com *.a.frootloopog.com *.admin.frootloopog.com *.api.frootloopog.com *.app.frootloopog.com *.assets.frootloopog.com *.cloud.frootloopog.com *.demo.frootloopog.com *.dev.frootloopog.com *.dffd0057-fab4-4fa3-8e7d-8ce69c332ea9.frootloopog.com *.f286660e-18a6-4b9c-b054-014a3ea39606.frootloopog.com *.frbxitest.frootloopog.com frootloopog.com *.frootloopog.com *.pay.frootloopog.com *.prod.frootloopog.com *.rd.frootloopog.com *.rds.frootloopog.com *.rdweb.frootloopog.com *.remote.frootloopog.com *.test.frootloopog.com
grelinette.info *.grelinette.info *.ww25.grelinette.info *.ww38.grelinette.info *.www.grelinette.info
marketingnews.it *.marketingnews.it *.remote.marketingnews.it *.www.marketingnews.it
*.hostmaster.nationals.it nationals.it *.nationals.it
*.old.rteddit.com rteddit.com *.rteddit.com *.ww25.rteddit.com *.ww38.rteddit.com
sheiin.com *.sheiin.com *.ww17.sheiin.com
*.ci.teacherspayteaches.com *.cicd.teacherspayteaches.com teacherspayteaches.com *.teacherspayteaches.com *.ww25.teacherspayteaches.com
*.caymanislandsyp.travelsite.net *.gateway.travelsite.net *.gw.travelsite.net *.ntmkwaccess.travelsite.net *.rdp.travelsite.net *.rdweb.travelsite.net *.rdweb2019.travelsite.net *.remote.travelsite.net *.remote2016.travelsite.net *.sitemaps.travelsite.net travelsite.net *.travelsite.net *.ts.travelsite.net *.vpn1.travelsite.net