76/100 SECURITY SCORE

Certificate Information

Subject
CN=lojadona.store
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 11, 2026
Valid Until
May 12, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:10:16:48:6C:EB:F4:48:27:42:41:0A:76:B8:0A:42:E2:C5:81:E3:2E:74:16:EA:1D:A8:07:53:13:DC:76:0F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
dotvids.com *.dotvids.com *.hostmaster.dotvids.com

Other domains in certificate

*.16383.5555qqqq.com 5555qqqq.com *.5555qqqq.com *.anxhex.5555qqqq.com *.czyaxv.5555qqqq.com *.dzirsh.5555qqqq.com *.jufvge.5555qqqq.com
appsw4.xyz *.appsw4.xyz *.kwid9.appsw4.xyz
capitalinvest.biz *.capitalinvest.biz
*.adblock.dong77.sbs dong77.sbs *.dong77.sbs *.resolver.dong77.sbs
*.137.freeaav.online *.86.freeaav.online *.91av.freeaav.online *.cicd.freeaav.online *.development.freeaav.online freeaav.online *.freeaav.online *.insight.freeaav.online *.www.freeaav.online
lojadona.store *.lojadona.store
*.intranet.maitreyagirls.blog maitreyagirls.blog *.maitreyagirls.blog *.store.maitreyagirls.blog
newsmedia71.store *.newsmedia71.store
newstoday24x007.com *.newstoday24x007.com
non100.com *.non100.com
pandorakakki.com *.pandorakakki.com
*.go.phom.info *.ns1.phom.info *.ns2.phom.info phom.info *.phom.info *.protonix.phom.info *.webdisk.phom.info *.ww38.phom.info
planners101.com *.planners101.com
pontostrocados.com *.pontostrocados.com
relationshipeducation.com *.relationshipeducation.com *.ww38.relationshipeducation.com
seaisleinn.com *.seaisleinn.com *.www.seaisleinn.com
singa69.co *.singa69.co
skogio.store *.skogio.store
sophieee.site *.sophieee.site
spyking.org *.spyking.org *.www.spyking.org
thespruce.store *.thespruce.store
*.portal.travellivingdreams.live travellivingdreams.live *.travellivingdreams.live
*.admin.trumpwon.vip *.dashboard.trumpwon.vip *.intranet.trumpwon.vip *.nnljsweb.trumpwon.vip *.qa.trumpwon.vip *.staging.trumpwon.vip *.store.trumpwon.vip *.test.trumpwon.vip trumpwon.vip *.trumpwon.vip *.v1.trumpwon.vip *.web.trumpwon.vip
ugavd.shop *.ugavd.shop
yossysexshop.com *.yossysexshop.com