76/100 SECURITY SCORE

Certificate Information

Subject
CN=797279.cc
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026 81 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
03:22:B5:CC:FD:AA:F7:74:FB:46:BA:D1:C0:6B:A8:D6:AC:55:80:79:7A:83:80:77:E2:C9:D7:A2:3A:45:A2:97
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
sftools.net *.sftools.net

Other domains in certificate

797279.cc *.797279.cc
bank-owned-cars-0o4r9o5h6v7.sbs *.bank-owned-cars-0o4r9o5h6v7.sbs
ewetw.im *.ewetw.im
grassrootsexperts.live *.grassrootsexperts.live
gullfosscorp.com *.gullfosscorp.com
h3ynsmvh4t.cc *.h3ynsmvh4t.cc
haqes.com *.haqes.com
incricaoenemnacional.info *.incricaoenemnacional.info
indianwd.click *.indianwd.click
inscricaoenem2025.onl *.inscricaoenem2025.onl
ltltltltltltlt.top *.ltltltltltltlt.top
mmgnwroe9wot967.com *.mmgnwroe9wot967.com
mudy7.com *.mudy7.com
mxpvlqrb.onl *.mxpvlqrb.onl
newsoftwareideas.com *.newsoftwareideas.com
nhfdc.org *.nhfdc.org
nordanstandard.us *.nordanstandard.us
okpay.com.au *.okpay.com.au
olfanghuwang.com *.olfanghuwang.com
online-loans-7r5d3x9f1y5.sbs *.online-loans-7r5d3x9f1y5.sbs
onlinecarinsurance.click *.onlinecarinsurance.click
onu-haiti.org *.onu-haiti.org
phimmoichillt.net *.phimmoichillt.net
phimmoichillu.net *.phimmoichillu.net
pjwaffle.com *.pjwaffle.com
plastivomoldtomarket.com *.plastivomoldtomarket.com
radaranalyticsgroup.com *.radaranalyticsgroup.com
restlessraven.com *.restlessraven.com
rhinoplasty-8i6y6q7z6t7.sbs *.rhinoplasty-8i6y6q7z6t7.sbs
shexiangwang.com *.shexiangwang.com
sits.co.in *.sits.co.in
specificschool.com *.specificschool.com
sportoneegy.com *.sportoneegy.com
strategylabs.xyz *.strategylabs.xyz
suttocide.com *.suttocide.com
techwaver.com *.techwaver.com
tepacompanies.com *.tepacompanies.com
teyoy.com *.teyoy.com
thenewwheel.com *.thenewwheel.com
threepointsolutions.ca *.threepointsolutions.ca
tiir.com *.tiir.com
tipplow.com *.tipplow.com
wovww.loan *.wovww.loan
xn--zf0a262a.com *.xn--zf0a262a.com