76/100 SECURITY SCORE

Certificate Information

Subject
CN=creditgenius360.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 22, 2026
Valid Until
August 20, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B1:F8:7E:F3:D4:E8:51:EF:03:A9:B0:AA:1D:15:7B:6C:E5:4C:C9:52:07:5E:6F:6F:31:94:EF:4E:1E:17:29:CE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
sofuoffer.com *.sofuoffer.com *.app.sofuoffer.com *.apps.sofuoffer.com *.argo.sofuoffer.com *.backend.sofuoffer.com *.cloud.sofuoffer.com *.connect.sofuoffer.com *.data.sofuoffer.com *.demo.sofuoffer.com *.dev.sofuoffer.com *.flow-staging.sofuoffer.com *.flowise.sofuoffer.com *.gateway.sofuoffer.com *.gp.sofuoffer.com *.intranet.sofuoffer.com *.mwkuhbyivpdemo.sofuoffer.com *.old.sofuoffer.com *.rdp.sofuoffer.com *.remote.sofuoffer.com *.remoto.sofuoffer.com *.shop.sofuoffer.com *.staging.sofuoffer.com *.store.sofuoffer.com *.superset.sofuoffer.com *.test.sofuoffer.com *.vpn2.sofuoffer.com *.vpnssl.sofuoffer.com *.webvpn.sofuoffer.com *.workflow.sofuoffer.com *.www.sofuoffer.com

Other domains in certificate

*.cpcontacts.creditgenius360.com creditgenius360.com *.creditgenius360.com *.m.creditgenius360.com *.webapps.creditgenius360.com *.ww25.creditgenius360.com *.ww38.creditgenius360.com
dnieelectronico.es *.dnieelectronico.es *.mluftwwww.dnieelectronico.es *.sitemap.dnieelectronico.es *.sitemaps.dnieelectronico.es *.ww.dnieelectronico.es *.www.dnieelectronico.es
*.admin.giftcards.trading *.afmipckq.giftcards.trading *.api.giftcards.trading *.app.giftcards.trading *.assets.giftcards.trading *.backup.giftcards.trading *.blog.giftcards.trading *.bmvnofjzvsvpn.giftcards.trading *.demo.giftcards.trading *.dev.giftcards.trading *.fjzvsvpn.giftcards.trading giftcards.trading *.giftcards.trading *.git.giftcards.trading *.gitlab.giftcards.trading *.ie4qjy.giftcards.trading *.jrmjiqa.giftcards.trading *.mailer.giftcards.trading *.marketing.giftcards.trading *.qa.giftcards.trading *.secure.giftcards.trading *.sitemap.giftcards.trading *.sitemaps.giftcards.trading *.staging.giftcards.trading *.stg.giftcards.trading *.test.giftcards.trading *.uat.giftcards.trading *.v1.giftcards.trading *.v2.giftcards.trading *.vpn.giftcards.trading *.web.giftcards.trading *.wordpress.giftcards.trading *.wp.giftcards.trading *.www.giftcards.trading
*.api.groostle.info *.app.groostle.info *.backup.groostle.info *.dev.groostle.info groostle.info *.groostle.info *.mail.groostle.info *.staging.groostle.info *.uat.groostle.info
noonkxq.shop *.noonkxq.shop