76/100 SECURITY SCORE

Certificate Information

Subject
CN=duniafilm21.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 25, 2026
Valid Until
May 26, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:BC:56:C7:51:AA:57:1E:BF:23:06:CD:4C:DB:12:8B:C1:30:DB:C4:D4:F5:7D:F0:CB:99:81:74:BF:A6:86:DD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
fairbnb.net *.fairbnb.net *.adapttimber.fairbnb.net *.adapttimbercom.fairbnb.net *.beastfords.fairbnb.net *.bnbook.fairbnb.net *.booksonboard.fairbnb.net *.com.fairbnb.net *.fordxr5turbo.fairbnb.net *.helpmeairbnb.fairbnb.net *.hosposocial-com-au.fairbnb.net *.hosposocial.fairbnb.net *.literaryelixirs.fairbnb.net *.markited.fairbnb.net *.mjryan.fairbnb.net *.random.fairbnb.net *.roamlocal.fairbnb.net *.sharingaustralia.fairbnb.net *.vicaiacom.fairbnb.net

Other domains in certificate

aus98.com *.aus98.com *.uk.aus98.com *.users.aus98.com
bergzeig.de *.bergzeig.de *.login.bergzeig.de
christiankitchen.co.uk *.christiankitchen.co.uk *.ww25.christiankitchen.co.uk
dissengends.com *.dissengends.com
duniafilm21.xyz *.duniafilm21.xyz
*.9c100472-9a3e-4ce4-9f31-b55dea1ec33f.kuschelnest.eu *.admin.kuschelnest.eu *.api.kuschelnest.eu *.app.kuschelnest.eu *.dashboard.kuschelnest.eu *.git.kuschelnest.eu *.gitlab.kuschelnest.eu *.hostmaster.kuschelnest.eu *.integration-insight.kuschelnest.eu *.intranet.kuschelnest.eu kuschelnest.eu *.kuschelnest.eu *.login.kuschelnest.eu *.mail.kuschelnest.eu *.notexistsgit.kuschelnest.eu *.notexistshostmaster.kuschelnest.eu *.sandbox.kuschelnest.eu *.store.kuschelnest.eu *.ww.kuschelnest.eu *.ww1.kuschelnest.eu *.ww12.kuschelnest.eu *.ww7.kuschelnest.eu *.www.kuschelnest.eu
liquorwinetime.com *.liquorwinetime.com
medentry.com.au *.medentry.com.au *.onlinelearning.medentry.com.au *.ww25.medentry.com.au
myshenye.com *.myshenye.com *.www.myshenye.com
*.42tlmchft2sepwn7.pairbet.online *.dash.pairbet.online *.eloizwebmail.pairbet.online pairbet.online *.pairbet.online *.ww25.pairbet.online
ramathegoldennote.com *.ramathegoldennote.com
sanfranciscomouldings.com *.sanfranciscomouldings.com *.travel.sanfranciscomouldings.com
ss4gas.co.uk *.ss4gas.co.uk *.ww38.ss4gas.co.uk *.www.ss4gas.co.uk
stjo.pro *.stjo.pro
telegrow.io *.telegrow.io
thebesttraffever.ru *.thebesttraffever.ru
theguitarshoponline.com *.theguitarshoponline.com
travellastminute.au *.travellastminute.au