79/100 SECURITY SCORE

Certificate Information

Subject
CN=dacryocystotomy.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 18, 2026
Valid Until
May 19, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3D:06:A0:3B:97:A7:3E:4B:63:78:4F:AC:EF:FE:82:23:10:4B:BC:2F:F2:E8:CE:47:75:A2:51:AB:E8:E8:EA:CB
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
egggolf.com *.egggolf.com

Other domains in certificate

dacryocystotomy.com *.dacryocystotomy.com
de-vegas.club *.de-vegas.club
deepinsight-ai.com *.deepinsight-ai.com
dermagenfreund.com *.dermagenfreund.com
dewasgp.pro *.dewasgp.pro
dotlabs.studio *.dotlabs.studio
droitausommeil.net *.droitausommeil.net
e5476727.vip *.e5476727.vip
eastlandfood.net *.eastlandfood.net
emergencydentist.in *.emergencydentist.in
epilepsyanticonvulsant778168.icu *.epilepsyanticonvulsant778168.icu
euro-bizsafe.digital *.euro-bizsafe.digital
f64867636.com *.f64867636.com
factorxgroup.com *.factorxgroup.com
fairfield.ch *.fairfield.ch
fairtexsingaporemuaythaishop.com *.fairtexsingaporemuaythaishop.com
famousinternetgirl.com *.famousinternetgirl.com
fanaticsusjerseysshop.com *.fanaticsusjerseysshop.com
fanaticsworldjerseys.com *.fanaticsworldjerseys.com
fipns.gdn *.fipns.gdn
firstbridgeinstantfunding.com *.firstbridgeinstantfunding.com
fishingcharterami.com *.fishingcharterami.com
freixenetbrutprestige.com *.freixenetbrutprestige.com
g4napp.com *.g4napp.com
gadps-epts.net *.gadps-epts.net
gainsecurezz.click *.gainsecurezz.click
galaxychampion856.top *.galaxychampion856.top
gamma-cazinos-online.biz *.gamma-cazinos-online.biz
getbirdview.com *.getbirdview.com
giaidaptre.com *.giaidaptre.com
gkavdxg512.vip *.gkavdxg512.vip
globalfanjerseys.com *.globalfanjerseys.com
gwqaf.cc *.gwqaf.cc
hayal4.org *.hayal4.org
healingpathway.rest *.healingpathway.rest
hollanway.com *.hollanway.com
homemortgagestore.com *.homemortgagestore.com
imbenefits.com *.imbenefits.com
internationaljerseys.com *.internationaljerseys.com
inverttirpem.com *.inverttirpem.com
investroutezz.digital *.investroutezz.digital
thin.it.com *.thin.it.com
jbinvestment.info *.jbinvestment.info
miuro.tv *.miuro.tv