76/100 SECURITY SCORE

Certificate Information

Subject
CN=saudevidafit.online
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 12, 2026
Valid Until
May 13, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6E:47:67:02:85:78:C9:32:68:D4:43:12:4A:1E:A8:C6:07:07:56:AE:35:E9:3B:4E:20:43:78:B1:FF:4B:DD:1C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
lebich.com *.lebich.com *.api.lebich.com *.backup.lebich.com *.dev.lebich.com *.hostmaster.lebich.com *.mail.lebich.com *.sitemaps.lebich.com *.test.lebich.com *.ww1.lebich.com *.ww16.lebich.com

Other domains in certificate

*.admin.baggear.us baggear.us *.baggear.us *.www.baggear.us
binaric.org *.binaric.org *.cvtr.binaric.org *.demo-de-0.binaric.org *.demo-p1-dc0.binaric.org *.dev-refactor-profile.binaric.org *.dev-test-platform.binaric.org *.dev-touch-close-cond.binaric.org *.dev.binaric.org *.mysql-master-ffx-0.binaric.org *.partner.binaric.org *.secure-dev-api-formdata-validate-24333.binaric.org *.st01.binaric.org *.st02.binaric.org *.st04.binaric.org *.std.binaric.org *.vtr.binaric.org *.web.binaric.org *.widget.binaric.org *.wl.binaric.org *.www.binaric.org *.zbx.binaric.org
*.demo.hw34.com *.forum.hw34.com *.forums.hw34.com hw34.com *.hw34.com *.wiki.hw34.com *.www.hw34.com
*.appleton.idportablepottyrentals.biz *.carmel.idportablepottyrentals.biz *.dothan.idportablepottyrentals.biz *.flowermound.idportablepottyrentals.biz idportablepottyrentals.biz *.idportablepottyrentals.biz *.iowacity.idportablepottyrentals.biz *.lawrence.idportablepottyrentals.biz *.lorain.idportablepottyrentals.biz *.loveland.idportablepottyrentals.biz *.lynwood.idportablepottyrentals.biz *.mission.idportablepottyrentals.biz *.pleasanton.idportablepottyrentals.biz *.redlands.idportablepottyrentals.biz *.redondobeach.idportablepottyrentals.biz *.skokie.idportablepottyrentals.biz *.turlock.idportablepottyrentals.biz *.waukesha.idportablepottyrentals.biz *.wyoming.idportablepottyrentals.biz
saudevidafit.online *.saudevidafit.online *.www.saudevidafit.online
*.api.tousis.com *.autodiscover.tousis.com *.cpanel.tousis.com *.dev.tousis.com *.ebay.tousis.com *.mail.tousis.com *.sitemap.tousis.com *.test.tousis.com tousis.com *.tousis.com *.webdisk.tousis.com *.ww25.tousis.com *.ww38.tousis.com
*.ad99b674-6969-464d-a1a6-384c2dd284f8.vongoandanchor.coffee *.checkout.vongoandanchor.coffee *.home.vongoandanchor.coffee *.sitemaps.vongoandanchor.coffee vongoandanchor.coffee *.vongoandanchor.coffee *.www.vongoandanchor.coffee
*.test.ygxacz.com ygxacz.com *.ygxacz.com