Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pfify.pro
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8B:E4:DC:65:AD:13:D9:5B:F8:55:54:84:DA:AF:84:2A:1B:1F:25:B9:74:E3:4B:D3:27:A4:3B:99:0F:03:2D:7E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
readm.today
*.readm.today
pfify.pro
*.pfify.pro
pgjmkw.bid
*.pgjmkw.bid
phimosis-surgery-jp-687.click
*.phimosis-surgery-jp-687.click
play-pulse-crypt.xyz
*.play-pulse-crypt.xyz
play-pulse-realm.xyz
*.play-pulse-realm.xyz
pomeranian.it
*.pomeranian.it
pomeriggi.it
*.pomeriggi.it
pornmossv7.xyz
*.pornmossv7.xyz
powerdrinks.it
*.powerdrinks.it
preciousgardeninggoals.live
*.preciousgardeninggoals.live
prismo.it
*.prismo.it
programmigestione.it
*.programmigestione.it
propiedadesenrepublicadominicana.com
*.propiedadesenrepublicadominicana.com
purchase.it
*.purchase.it
pureloveceremonies.beauty
*.pureloveceremonies.beauty
purevegan.it
*.purevegan.it
pww30.top
*.pww30.top
pxdbf.pro
*.pxdbf.pro
q1gcyjm.cyou
*.q1gcyjm.cyou
quirkyfoodfindings.food
*.quirkyfoodfindings.food
randomly.it
*.randomly.it
ranucci.it
*.ranucci.it
receh88-bos.com
*.receh88-bos.com
relaxationvacationhaven.live
*.relaxationvacationhaven.live
reno.it
*.reno.it
reservedcelebritybooking.com
*.reservedcelebritybooking.com
resilientgardenaura.live
*.resilientgardenaura.live
retards.it
*.retards.it
roboticsoffice.com
*.roboticsoffice.com
rollohalfleafcigar.com
*.rollohalfleafcigar.com
romanticdayvows.beauty
*.romanticdayvows.beauty
romar.it
*.romar.it
rst88.cc
*.rst88.cc
ruined.it
*.ruined.it
sandro.it
*.sandro.it
scarpesposa.it
*.scarpesposa.it
schoolstoe.net
*.schoolstoe.net
scripthunter.xyz
*.scripthunter.xyz
securitytech.it
*.securitytech.it
seodirectory.it
*.seodirectory.it
shapetheworld.org
*.shapetheworld.org
shibuya-school-904915684.click
*.shibuya-school-904915684.click
shopapp.it
*.shopapp.it
sidewalkconsulting.com
*.sidewalkconsulting.com
Other domains in certificate