Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=mulheresdiasporicas.com.br
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 07, 2026
Valid Until
August 05, 2026 56 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:8E:F1:F0:49:34:A8:DE:0F:4E:4E:78:A3:7D:4D:A5:EB:42:18:E0:1D:40:9A:DD:DA:C4:D1:EE:25:09:13:D5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
tsumiki.tech *.tsumiki.tech *.blog.tsumiki.tech *.dev.tsumiki.tech *.media.tsumiki.tech *.stg.tsumiki.tech

Other domains in certificate

300mbfilms.io *.300mbfilms.io *.airflow.300mbfilms.io *.mail.300mbfilms.io *.prod.300mbfilms.io *.ww38.300mbfilms.io
*.32.betslot.live betslot.live *.betslot.live
c-4.store *.c-4.store
*.api.cblab.tech *.bshow.cblab.tech *.business-show.cblab.tech *.cabinet.cblab.tech cblab.tech *.cblab.tech *.crm.cblab.tech *.denta.cblab.tech *.dev.cblab.tech *.docs.cblab.tech *.en.cblab.tech *.kz.cblab.tech *.lk.cblab.tech *.teacher.cblab.tech *.world.cblab.tech
*.32.downblouse.pro *.adg.downblouse.pro *.cdn.downblouse.pro downblouse.pro *.downblouse.pro *.rustore.downblouse.pro *.website.downblouse.pro
*.32.dropserve.info dropserve.info *.dropserve.info
hopla.studio *.hopla.studio *.ww38.hopla.studio
insrv.io *.insrv.io *.pay.insrv.io *.staging2.insrv.io *.staging5.insrv.io *.ww25.insrv.io *.ww38.insrv.io
*.32.jkplayhouse.pro jkplayhouse.pro *.jkplayhouse.pro
*.32.kishivision.com kishivision.com *.kishivision.com
*.32.klubfabrykamocy.com klubfabrykamocy.com *.klubfabrykamocy.com
*.32.letsdancevacations.com letsdancevacations.com *.letsdancevacations.com
mulheresdiasporicas.com.br *.mulheresdiasporicas.com.br
shilp.studio *.shilp.studio *.ww38.shilp.studio
*.32.sugarhighshoppe.pro sugarhighshoppe.pro *.sugarhighshoppe.pro
*.32.watchflix.bar watchflix.bar *.watchflix.bar
*.6f20c6f7-103e-4ec7-ad77-8545bed99acd.wishbands.shop *.api.wishbands.shop *.d9105a29-d14e-44b0-900b-2d8064e96a37.wishbands.shop *.dev.wishbands.shop *.forms.wishbands.shop *.m.wishbands.shop *.webvpn.wishbands.shop wishbands.shop *.wishbands.shop
*.ww38.yako1red.pro yako1red.pro *.yako1red.pro
*.ww38.yako4.pro yako4.pro *.yako4.pro