Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=dot-wo.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
55:37:B6:A6:27:CD:B9:6A:6F:D1:4A:7E:43:7E:5D:E5:3D:B0:91:69:3C:B2:6A:74:20:59:A5:AB:AA:CF:BD:F3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
safb.org *.safb.org *.owa.safb.org *.webmail.safb.org

Other domains in certificate

0lay.com *.0lay.com *.dns.0lay.com *.hostmaster.0lay.com *.mx7.0lay.com *.ww25.0lay.com *.www.0lay.com
2226665a10.shop *.2226665a10.shop *.com.2226665a10.shop
228235.cc *.228235.cc *.cc.228235.cc
*.91zx.91zxh.xyz 91zxh.xyz *.91zxh.xyz *.ww25.91zxh.xyz *.ww38.91zxh.xyz *.www.91zxh.xyz
btcnetwork.pro *.btcnetwork.pro *.gzr95c.btcnetwork.pro
carmini.com *.carmini.com *.www.carmini.com
coestatepark.com *.coestatepark.com *.cpanel.coestatepark.com
dermapel.co *.dermapel.co *.ww17.dermapel.co
*.28.dot-wo.com dot-wo.com *.dot-wo.com *.owa.dot-wo.com
fantasticsequoia.com *.fantasticsequoia.com *.gy5v73.fantasticsequoia.com
flare-pixel-jolt.rest *.flare-pixel-jolt.rest *.h1jcak.flare-pixel-jolt.rest
hotspringscampground.com *.hotspringscampground.com *.sitemaps.hotspringscampground.com *.webdisk.hotspringscampground.com *.webmail.hotspringscampground.com
koerl.com *.koerl.com *.webmail.koerl.com
lovefromjane.com *.lovefromjane.com *.webmail.lovefromjane.com
manzur.co *.manzur.co *.webmail.manzur.co
outlooko.com *.outlooko.com *.prod.outlooko.com *.protection.outlooko.com *.w.outlooko.com *.ww31.outlooko.com *.ww38.outlooko.com
silenthowl.com *.silenthowl.com *.webmail.silenthowl.com
spheraverse.com *.spheraverse.com *.webmail.spheraverse.com
superioralpha.com *.superioralpha.com *.webmail.superioralpha.com
*.admin.sweetmovie.it *.correo.sweetmovie.it *.email.sweetmovie.it *.imap.sweetmovie.it *.mail.sweetmovie.it *.mail3.sweetmovie.it *.mx.sweetmovie.it *.mymail.sweetmovie.it *.superset.sweetmovie.it sweetmovie.it *.sweetmovie.it *.webmail.sweetmovie.it
*.ww16.xn--steibein-tya.de xn--steibein-tya.de *.xn--steibein-tya.de