Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=fouladi.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 04, 2026
Valid Until
September 02, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:43:F8:63:39:FD:C2:F0:11:C1:C9:8A:90:A1:45:9F:35:26:49:3D:64:3F:17:28:36:3B:F8:5C:66:82:5E:8D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
flipfloptaco.com *.flipfloptaco.com *.app.flipfloptaco.com *.demo.flipfloptaco.com *.ekwgpadmin.flipfloptaco.com *.test.flipfloptaco.com *.vpn.flipfloptaco.com *.xrdnni.flipfloptaco.com

Other domains in certificate

360tee.com *.360tee.com *.xspq117.360tee.com
fouladi.com *.fouladi.com *.rouzbeh.fouladi.com
*.api.gcp-santai.com *.blog.gcp-santai.com gcp-santai.com *.gcp-santai.com *.nbwgjapi.gcp-santai.com *.xo6x5q.gcp-santai.com
*.cpcontacts.marciadecoster.com *.iqvy.marciadecoster.com marciadecoster.com *.marciadecoster.com *.prod.marciadecoster.com *.www.marciadecoster.com *.xcx.marciadecoster.com *.xn--akrzflojt-95a2o93b.marciadecoster.com
mdewatogel.com *.mdewatogel.com *.xr5252.mdewatogel.com
*.admin.playzonetime.com *.demo.playzonetime.com *.e7b3lv.playzonetime.com *.m.playzonetime.com *.mail.playzonetime.com playzonetime.com *.playzonetime.com *.test.playzonetime.com
*.www.xingqiu01.xyz xingqiu01.xyz *.xingqiu01.xyz
*.176.xn--dw2at9x.com *.admin.xn--dw2at9x.com *.hao.xn--dw2at9x.com *.m.xn--dw2at9x.com *.sitemap.xn--dw2at9x.com *.xn--525-hi33b.xn--dw2at9x.com xn--dw2at9x.com *.xn--dw2at9x.com *.xn--h1xv9c.xn--dw2at9x.com *.xn--q8qs0p.xn--dw2at9x.com
*.38.xn--i8sv73g.com *.8.xn--i8sv73g.com *.91.xn--i8sv73g.com *.cloud.xn--i8sv73g.com *.hao.xn--i8sv73g.com *.kaocerdweb.xn--i8sv73g.com *.m.xn--i8sv73g.com *.rd.xn--i8sv73g.com *.rds.xn--i8sv73g.com *.remote.xn--i8sv73g.com *.sitemap.xn--i8sv73g.com *.space.xn--i8sv73g.com *.vip.xn--i8sv73g.com *.wildcard.xn--i8sv73g.com *.xn--18-i49e.xn--i8sv73g.com xn--i8sv73g.com *.xn--i8sv73g.com *.xn--www-om8e783c0pxmh8a.xn--i8sv73g.com
*.hostmaster.xn--jvvxs.com *.m.xn--jvvxs.com *.mijn.xn--jvvxs.com *.secure.xn--jvvxs.com *.www.xn--jvvxs.com xn--jvvxs.com *.xn--jvvxs.com *.xn--vyzq8dv3x4mg.xn--jvvxs.com
*.edit.xn--zf3az8q.com *.m.xn--zf3az8q.com *.rd.xn--zf3az8q.com *.rds.xn--zf3az8q.com *.rdweb.xn--zf3az8q.com *.remote.xn--zf3az8q.com *.rh-api.xn--zf3az8q.com *.www.xn--zf3az8q.com *.xn--pvraaa.xn--zf3az8q.com *.xn--vqut04j.xn--zf3az8q.com xn--zf3az8q.com *.xn--zf3az8q.com