Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=1md1dwa.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B2:B4:47:46:C0:71:8C:AA:A1:BE:FE:DE:BC:71:5E:29:D3:85:2F:F8:FB:48:61:67:4B:11:11:C0:8C:02:AA:28
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
fotokabin.com *.fotokabin.com

Other domains in certificate

1md1dwa.com *.1md1dwa.com *.aim.1md1dwa.com *.assistance.1md1dwa.com *.aws.1md1dwa.com *.before.1md1dwa.com *.bottle.1md1dwa.com *.briefly.1md1dwa.com *.buy.1md1dwa.com *.capable.1md1dwa.com *.catholic.1md1dwa.com *.h386z2.1md1dwa.com *.h3yez2.1md1dwa.com *.h4m5z1.1md1dwa.com *.h4m5z2.1md1dwa.com *.h4m6z2.1md1dwa.com *.h4naz.1md1dwa.com *.h4naz1.1md1dwa.com *.h4nbz2.1md1dwa.com *.hbopfwiki3.1md1dwa.com *.htrhz1.1md1dwa.com *.hu45z1.1md1dwa.com *.huftz1.1md1dwa.com *.hv2vz5.1md1dwa.com *.hxnvz7.1md1dwa.com *.hxykz1.1md1dwa.com *.kawgwiki6.1md1dwa.com *.kawgwiki8.1md1dwa.com *.wiki.1md1dwa.com *.wiki5.1md1dwa.com *.wikiwiki.1md1dwa.com *.wikiwiki5.1md1dwa.com *.wwwiki6.1md1dwa.com *.x5wz2.1md1dwa.com
dealster.com *.dealster.com *.integration.dealster.com *.monitoring.dealster.com *.wildcard.dealster.com *.ww25.dealster.com *.ww33.dealster.com *.ww38.dealster.com *.www.dealster.com
fiestaloca.com *.fiestaloca.com
finissimo.com *.finissimo.com
fitnesspowerprogress.run *.fitnesspowerprogress.run
fitnesssynergylink.run *.fitnesssynergylink.run
focusedimpact.com *.focusedimpact.com
footguards.com *.footguards.com
fudian.com *.fudian.com
funkyjunk.com *.funkyjunk.com
galalith.com *.galalith.com
garretts.com *.garretts.com
gasandenergy.com *.gasandenergy.com
gatillero.com *.gatillero.com
*.hostmaster.smartaheet.com *.ru.smartaheet.com *.secure.smartaheet.com smartaheet.com *.smartaheet.com *.staging.smartaheet.com *.superset.smartaheet.com *.test.smartaheet.com *.ww16.smartaheet.com *.ww25.smartaheet.com
*.chat.torrentdia100.com *.data.torrentdia100.com *.random.torrentdia100.com *.sitemaps.torrentdia100.com *.superset.torrentdia100.com torrentdia100.com *.torrentdia100.com *.ww1.torrentdia100.com *.ww12.torrentdia100.com *.ww5.torrentdia100.com *.www.torrentdia100.com