Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=sicilyshop.shop
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 10, 2026
Valid Until
April 10, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:3A:C4:7B:57:41:4D:41:01:CB:19:26:EC:B9:49:8B:50:27:68:91:B8:75:F8:C9:A6:28:7D:D6:C5:48:14:B5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
doflow.io *.doflow.io *.app.doflow.io *.docs.doflow.io *.ww25.doflow.io *.www.doflow.io

Other domains in certificate

ajuma.com *.ajuma.com *.dev.ajuma.com *.l.ajuma.com *.m.ajuma.com *.painel.ajuma.com *.r.ajuma.com *.users.ajuma.com *.ww25.ajuma.com
apoate.com *.apoate.com *.staging.apoate.com
appleru.store *.appleru.store *.autodiscover.appleru.store *.cpanel.appleru.store *.db.appleru.store *.dbadmin.appleru.store *.dev.appleru.store *.forum.appleru.store *.mail.appleru.store *.mysql.appleru.store *.phpmyadmin.appleru.store *.pma.appleru.store *.test.appleru.store *.webdisk.appleru.store *.webmail.appleru.store *.wordpress.appleru.store *.wp.appleru.store *.ww25.appleru.store
avidmarketinginc.com *.avidmarketinginc.com *.download.avidmarketinginc.com
dialaprank.com *.dialaprank.com *.its.dialaprank.com *.ww38.dialaprank.com
gnmprintportals.shop *.gnmprintportals.shop
*.dev.job-tensyoku.com job-tensyoku.com *.job-tensyoku.com
*.dev.kayabola.bet kayabola.bet *.kayabola.bet *.mobile.kayabola.bet *.news.kayabola.bet
*.download.laibabodley.click laibabodley.click *.laibabodley.click
*.cdn.namuwikiusercontent.com *.cdn2.namuwikiusercontent.com *.file.namuwikiusercontent.com *.hostmaster.namuwikiusercontent.com *.image-proxy.namuwikiusercontent.com *.live-attachment.namuwikiusercontent.com *.live.namuwikiusercontent.com *.live2-attachment.namuwikiusercontent.com *.live2.namuwikiusercontent.com *.live3-attachment.namuwikiusercontent.com *.live3.namuwikiusercontent.com namuwikiusercontent.com *.namuwikiusercontent.com *.proxy.namuwikiusercontent.com *.s3.namuwikiusercontent.com *.www.namuwikiusercontent.com
*.010.nihongo2.com nihongo2.com *.nihongo2.com
*.cfduid.sekans.live *.dl.sekans.live sekans.live *.sekans.live *.www.sekans.live
*.demo.sensational.live sensational.live *.sensational.live
*.app.sicilyshop.shop *.dev.sicilyshop.shop *.random.sicilyshop.shop sicilyshop.shop *.sicilyshop.shop *.ww25.sicilyshop.shop *.www.sicilyshop.shop