Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=gofilmes.wf
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 07, 2026
Valid Until
May 08, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:C9:52:E9:4A:63:EE:35:33:33:6E:EB:72:8A:49:77:92:4A:F5:66:8E:F7:87:C1:F5:F7:0A:85:0F:81:E6:B1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
m--world.com
*.m--world.com
*.m.m--world.com
*.ww25.m--world.com
airbnb-floorplan.com
*.airbnb-floorplan.com
*.comalc.airbnb-floorplan.com
aise.cc
*.aise.cc
*.ww25.aise.cc
archive-ie.com
*.archive-ie.com
*.ww16.archive-ie.com
*.ww38.archive-ie.com
*.api.aswad.store
aswad.store
*.aswad.store
attractionsdir.com
*.attractionsdir.com
*.245c4908dbb0.availableiptv.biz
availableiptv.biz
*.availableiptv.biz
bmt.it
*.bmt.it
*.mail3.bmt.it
*.metric.bmt.it
*.notexiststicketing.bmt.it
boybetgames.pro
*.boybetgames.pro
digitalfidelity-secured.us
*.digitalfidelity-secured.us
*.ww25.digitalfidelity-secured.us
*.ww38.digitalfidelity-secured.us
engagecommunities.com
*.engagecommunities.com
*.www.engagecommunities.com
fekry.studio
*.fekry.studio
gofilmes.wf
*.gofilmes.wf
grademate.me
*.grademate.me
greencraftbrewery.be
*.greencraftbrewery.be
greymouth.de
*.greymouth.de
*.random.greymouth.de
intima.digital
*.intima.digital
*.ivan.keitaro-support.site
keitaro-support.site
*.keitaro-support.site
meus.studio
*.meus.studio
*.pay.meus.studio
*.metrics.neverbreak.it
neverbreak.it
*.neverbreak.it
*.remoto.neverbreak.it
porn-clips.be
*.porn-clips.be
*.vpsvztukspxquoademo.porn-clips.be
psychologistclinic.com.au
*.psychologistclinic.com.au
seniordentalimplants.store
*.seniordentalimplants.store
*.www.seniordentalimplants.store
sontrust.com
*.sontrust.com
*.pay.starwest.studio
starwest.studio
*.starwest.studio
*.message.to-go.com
to-go.com
*.to-go.com
*.ww38.to-go.com
*.wwww.to-go.com
truckinginsurance.com.au
*.truckinginsurance.com.au
*.ww38.xcancelled.com
xcancelled.com
*.xcancelled.com
*.4pilares.zi-yu.com
*.mailzone.zi-yu.com
*.nunos.zi-yu.com
*.psantos-blog.zi-yu.com
*.tops.zi-yu.com
zi-yu.com
*.zi-yu.com
Other domains in certificate