Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=perfil.digital
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 15, 2025
Valid Until
March 15, 2026
51 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AB:A6:9C:22:F6:71:10:A8:D3:63:C6:EA:3C:EB:26:EB:BA:38:24:B0:11:03:01:B9:BC:1B:B2:28:C5:4A:A6:DD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
76 domains
dsnextgen.com
*.dsnextgen.com
*.com.dsnextgen.com
*.mtwww.dsnextgen.com
*.webmail.dsnextgen.com
*.ws.dsnextgen.com
*.wss.dsnextgen.com
*.ww17.dsnextgen.com
*.www.dsnextgen.com
*.66z.arjay.studio
*.6aa.arjay.studio
*.alt.arjay.studio
arjay.studio
*.arjay.studio
*.dev.arjay.studio
*.new.arjay.studio
*.14.bds.email
*.1f.bds.email
bds.email
*.bds.email
chiva.vip
*.chiva.vip
*.ww25.chiva.vip
coolhousplans.com
*.coolhousplans.com
fansite.au
*.fansite.au
floripaaudio.com.br
*.floripaaudio.com.br
greenmp3.com
*.greenmp3.com
*.jenkins.greenmp3.com
*.random.greenmp3.com
*.formacion.i-secacademy.com
i-secacademy.com
*.i-secacademy.com
iphone-br-77.sbs
*.iphone-br-77.sbs
lveventcenter.com
*.lveventcenter.com
*.random.lveventcenter.com
mupaymentvault.com
*.mupaymentvault.com
mynetworksettimgs.com
*.mynetworksettimgs.com
mynetworksetttings.com
*.mynetworksetttings.com
*.login.perfil.digital
*.mi.perfil.digital
perfil.digital
*.perfil.digital
*.quitar.perfil.digital
plataformasfera.com.br
*.plataformasfera.com.br
*.autodiscover.powersms.biz
powersms.biz
*.powersms.biz
propaulmitchell.com
*.propaulmitchell.com
*.app.toysterz.xyz
*.checkout.toysterz.xyz
toysterz.xyz
*.toysterz.xyz
*.ww25.toysterz.xyz
*.m25a.worthprom.online
worthprom.online
*.worthprom.online
wwwnebf.com
*.wwwnebf.com
xn--gaststttenauflsung-qtb28a.de
*.xn--gaststttenauflsung-qtb28a.de
*.test.zbarty.com
*.test2.zbarty.com
*.test3.zbarty.com
zbarty.com
*.zbarty.com
Other domains in certificate