76/100 SECURITY SCORE

Certificate Information

Subject
CN=layybhari.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 24, 2026
Valid Until
July 23, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:D9:FB:D0:D4:E9:30:7D:C1:F9:21:C4:0D:CC:B6:79:8B:8C:66:14:F7:A8:80:EA:B8:EB:2B:5F:C6:75:BB:16
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
onchaincompatible.com *.onchaincompatible.com *.dev.onchaincompatible.com *.external.onchaincompatible.com *.my.onchaincompatible.com *.public.onchaincompatible.com *.share.onchaincompatible.com *.sharepoint.onchaincompatible.com *.vpn.onchaincompatible.com

Other domains in certificate

*.14dc9813-f90d-4149-bb2a-d019f0c86f5a.digitales-rathaus.com *.3g.digitales-rathaus.com *.50732ade-284e-4fc1-b177-ec97bd70fa91.digitales-rathaus.com *.8b1bdfa4-10fb-49dd-8a6a-c29695d933f5.digitales-rathaus.com *.93fffc1b-bbee-49f0-891c-07e251d81391.digitales-rathaus.com *.992fc6a6-9a66-4aab-b693-f12ee8e1858e.digitales-rathaus.com *.a.digitales-rathaus.com *.anzhuo.digitales-rathaus.com *.apps.digitales-rathaus.com *.bhudoyvl.digitales-rathaus.com *.blog.digitales-rathaus.com *.book.digitales-rathaus.com *.cdn.digitales-rathaus.com *.chat.digitales-rathaus.com *.com.digitales-rathaus.com *.cpcalendars.digitales-rathaus.com *.de.digitales-rathaus.com digitales-rathaus.com *.digitales-rathaus.com *.download.digitales-rathaus.com *.fr.digitales-rathaus.com *.git.digitales-rathaus.com *.gitlab.digitales-rathaus.com *.home.digitales-rathaus.com *.imap.digitales-rathaus.com *.info.digitales-rathaus.com *.jqwvdtxh.digitales-rathaus.com *.kdhsnovi.digitales-rathaus.com *.login.digitales-rathaus.com *.m.digitales-rathaus.com *.mobile.digitales-rathaus.com *.mta-sts.digitales-rathaus.com *.office.digitales-rathaus.com *.portal.digitales-rathaus.com *.pxplkportal.digitales-rathaus.com *.shop.digitales-rathaus.com *.sinypcgh.digitales-rathaus.com *.sitemap.digitales-rathaus.com *.sitemaps.digitales-rathaus.com *.ups.digitales-rathaus.com *.usps.digitales-rathaus.com *.webdisk.digitales-rathaus.com *.wgsqscdn.digitales-rathaus.com *.whm.digitales-rathaus.com *.ww12.digitales-rathaus.com *.xalundij.digitales-rathaus.com *.xkneichat.digitales-rathaus.com
*.3520.hkp.in *.8c3819b8-1ca7-4f1e-82fd-22c178ff8b8e.hkp.in *.acgmoadmin.hkp.in *.admin.hkp.in *.demo.hkp.in hkp.in *.hkp.in *.hostmaster.hkp.in *.hplkcubg.hkp.in *.localhost.hkp.in *.m.hkp.in *.mail.hkp.in *.notexistsadmin.hkp.in *.web.hkp.in *.www.hkp.in
layybhari.com *.layybhari.com *.mail.layybhari.com *.privacy-policy.layybhari.com
*.dev.planeths.org *.magento.planeths.org planeths.org *.planeths.org *.store.planeths.org *.test.planeths.org *.ww25.planeths.org
sidam.fr *.sidam.fr
*.app.signalofself.info *.demo.signalofself.info *.dev.signalofself.info *.docs.signalofself.info signalofself.info *.signalofself.info