79/100 SECURITY SCORE

Certificate Information

Subject
CN=drfiraz.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 30, 2026
Valid Until
April 30, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
36:9B:61:66:1D:8B:40:74:B5:01:56:C0:B7:67:D4:FF:27:98:B8:E6:7E:E5:7F:94:C1:26:7D:6C:BE:09:B0:10
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
privacytoolkit.net *.privacytoolkit.net

Other domains in certificate

drfiraz.com *.drfiraz.com
dringendeontstoppingsdienst428819.icu *.dringendeontstoppingsdienst428819.icu
drivedepot.com *.drivedepot.com
dubaicruise009063.icu *.dubaicruise009063.icu
dubaicruise105692.icu *.dubaicruise105692.icu
dubaicruise263042.icu *.dubaicruise263042.icu
dubaicruise313101.icu *.dubaicruise313101.icu
dubaicruise363424.icu *.dubaicruise363424.icu
dubaicruise481395.icu *.dubaicruise481395.icu
dubaicruise499944.icu *.dubaicruise499944.icu
dubaicruise748316.icu *.dubaicruise748316.icu
dubaivacation638018.icu *.dubaivacation638018.icu
duiattorneys335703.icu *.duiattorneys335703.icu
duilawyers078629.icu *.duilawyers078629.icu
dumpstercontainer283967.icu *.dumpstercontainer283967.icu
dumpstercontainer712625.icu *.dumpstercontainer712625.icu
dwz.bz *.dwz.bz
ecocute-replacement-957082696.click *.ecocute-replacement-957082696.click
explorelivex.com *.explorelivex.com
play-star-compound.xyz *.play-star-compound.xyz
play-stealth-matrix.xyz *.play-stealth-matrix.xyz
play-thunder-hollow.xyz *.play-thunder-hollow.xyz
play-tiger-fury.xyz *.play-tiger-fury.xyz
play-valor-citadel.xyz *.play-valor-citadel.xyz
play-victory-outland.xyz *.play-victory-outland.xyz
play-vivid-horizon.xyz *.play-vivid-horizon.xyz
play-void-district.xyz *.play-void-district.xyz
play-void-skyline.xyz *.play-void-skyline.xyz
play-warden-outpost.xyz *.play-warden-outpost.xyz
play-zephyr-division.xyz *.play-zephyr-division.xyz
postpartumpelviccare002692.icu *.postpartumpelviccare002692.icu
proarbaiapp.com *.proarbaiapp.com
probonolawyers539756.icu *.probonolawyers539756.icu
probonolawyers877940.icu *.probonolawyers877940.icu
properfusion.com *.properfusion.com
pushlive.net *.pushlive.net
renewalproject.org *.renewalproject.org
resultdekho.in *.resultdekho.in
ridomovies.pw *.ridomovies.pw
roboticproduction.com *.roboticproduction.com
rusich.xyz *.rusich.xyz
sav.one *.sav.one
sbpdcl.in *.sbpdcl.in
schokotelle.com *.schokotelle.com