76/100 SECURITY SCORE

Certificate Information

Subject
CN=hobda.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 23, 2026
Valid Until
July 22, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FF:03:14:A7:F4:F7:BF:E9:8C:07:EA:69:31:5E:2A:E9:B9:68:14:C4:E3:6C:CA:11:C4:9C:67:DF:0B:F6:A6:68
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
cocksizes.com *.cocksizes.com *.help.cocksizes.com *.home.cocksizes.com *.noc.cocksizes.com *.pics.cocksizes.com *.poczta.cocksizes.com *.pro.cocksizes.com *.project.cocksizes.com *.sms.cocksizes.com *.staging.cocksizes.com *.store.cocksizes.com *.ww38.cocksizes.com *.www-1.cocksizes.com

Other domains in certificate

crystallin.tech *.crystallin.tech
cwyvm.co *.cwyvm.co
dd9gz9.cyou *.dd9gz9.cyou
dienmaytuananh.shop *.dienmaytuananh.shop
digi1mventures.com *.digi1mventures.com
digitalforgeplatform.biz *.digitalforgeplatform.biz
dreamdatecontest.com *.dreamdatecontest.com
*.cis.esports.cheap esports.cheap *.esports.cheap *.play.esports.cheap *.prod.esports.cheap
exclusiveweddingessentials.beauty *.exclusiveweddingessentials.beauty
fast-secure-backup-solution-2025sp.sbs *.fast-secure-backup-solution-2025sp.sbs
fitnessvirtueguide.run *.fitnessvirtueguide.run
*.7732951432.goodmorningquotes.club goodmorningquotes.club *.goodmorningquotes.club
gossipgazette.xyz *.gossipgazette.xyz
gossipgust.xyz *.gossipgust.xyz
greenapp.xyz *.greenapp.xyz
griefhealingpandemic.icu *.griefhealingpandemic.icu
hobda.com *.hobda.com *.in.hobda.com *.qualidade.hobda.com
iwkaitalia.art *.iwkaitalia.art
k3588.vip *.k3588.vip
k5k9.cn *.k5k9.cn
kamikazegmbp.store *.kamikazegmbp.store
labeling-jobs-678468.sbs *.labeling-jobs-678468.sbs
lavadoras-en-venta-con-pagos-mensuales.sbs *.lavadoras-en-venta-con-pagos-mensuales.sbs
leak-detectives.com *.leak-detectives.com
loginmicrosoftauthsessionchecksigninrecoverymicrosoftonline.art *.loginmicrosoftauthsessionchecksigninrecoverymicrosoftonline.art
masteradventuretcg.shop *.masteradventuretcg.shop
play-flushslots.quest *.play-flushslots.quest
recuperoanniscolastici.sbs *.recuperoanniscolastici.sbs
*.login.skiprix.com *.mail.skiprix.com *.mbox.skiprix.com *.mta-sts.skiprix.com *.office.skiprix.com skiprix.com *.skiprix.com *.webconnect.skiprix.com *.www1.skiprix.com
*.alpha.v3v.bar *.poc.v3v.bar *.qa-bi.v3v.bar v3v.bar *.v3v.bar