76/100 SECURITY SCORE

Certificate Information

Subject
CN=coffhampton.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 25, 2026
Valid Until
June 23, 2026 56 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
52:2B:A2:AA:D4:B3:88:9D:EF:D0:D1:1A:66:ED:30:B7:98:87:8A:E0:BB:C8:D2:F9:B7:A5:8C:11:02:E3:AE:81
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
coffhampton.com *.coffhampton.com *.contact.coffhampton.com *.cw.coffhampton.com *.email2.coffhampton.com *.sdc.coffhampton.com *.su.coffhampton.com *.vpn.coffhampton.com *.wt.coffhampton.com *.www.coffhampton.com

Other domains in certificate

*.0d53f213-5c91-4a0d-9021-3391189fea48.builditbabybuild.deals *.admin.builditbabybuild.deals *.api.builditbabybuild.deals *.app.builditbabybuild.deals *.assets.builditbabybuild.deals *.autodiscover.builditbabybuild.deals builditbabybuild.deals *.builditbabybuild.deals *.dev.builditbabybuild.deals *.dfb6cf39-16ef-4e87-97b3-5f7cdeb47f7e.builditbabybuild.deals *.hisersrpishostmaster.builditbabybuild.deals *.hostmaster.builditbabybuild.deals *.mail.builditbabybuild.deals *.test.builditbabybuild.deals
dirtjeep.com *.dirtjeep.com *.hostmaster.dirtjeep.com *.m.dirtjeep.com *.mta-sts.dirtjeep.com *.sitemaps.dirtjeep.com *.wwww.dirtjeep.com
flowersbynancywv.com *.flowersbynancywv.com *.mta-sts.flowersbynancywv.com
*.admin.fowler.it *.anda.fowler.it *.api.fowler.it *.backend.fowler.it *.bbs.fowler.it *.demo.fowler.it fowler.it *.fowler.it *.j.fowler.it *.mrs.fowler.it *.superset.fowler.it *.unionmrs.fowler.it
heritages.it *.heritages.it *.hostmaster.heritages.it
*.ks0v9.longfeng138.top longfeng138.top *.longfeng138.top
*.mx.premiumeth.com premiumeth.com *.premiumeth.com
*.18.tubesexer.com *.1x.tubesexer.com *.2aa86bdd-8f31-467d-ae5a-6644c3bc2407.tubesexer.com *.demo.tubesexer.com *.i.tubesexer.com *.m.tubesexer.com *.magento.tubesexer.com *.me10r.tubesexer.com *.staging.tubesexer.com *.tools.tubesexer.com tubesexer.com *.tubesexer.com *.ww1.tubesexer.com *.ww16.tubesexer.com *.ww25.tubesexer.com *.ww8.tubesexer.com *.www.tubesexer.com *.x1.tubesexer.com *.z.tubesexer.com
twistedmindtattoos.com *.twistedmindtattoos.com *.wildcard.twistedmindtattoos.com
*.api.unidokkan.com *.app.unidokkan.com *.autodiscover.unidokkan.com *.mail.unidokkan.com *.owa.unidokkan.com *.sitemap.unidokkan.com *.sitemaps.unidokkan.com unidokkan.com *.unidokkan.com *.webmail.unidokkan.com *.ww12.unidokkan.com *.ww7.unidokkan.com *.www.unidokkan.com