Open
Cached
·
just now
91/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=wofas.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 27, 2026
Valid Until
July 26, 2026
45 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
71:94:59:06:20:77:C5:40:30:6A:3B:AA:7D:4C:EA:9E:70:D5:71:46:67:12:04:D7:5A:F8:4C:35:94:F1:F8:77
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
camera=(), microphone=(), geolocation=()
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Strengthen CSP by removing 'unsafe-eval'
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
se.live
*.se.live
*.bestepau.se.live
*.co.se.live
*.expedia.se.live
*.grown.se.live
*.hd.se.live
*.hotmail.se.live
*.iem.se.live
*.jessicagylfe.se.live
*.mrjet.se.live
*.org.se.live
*.pomodorix.se.live
*.sos.se.live
*.wooden-living-room-table.se.live
*.ww25.se.live
*.ww38.se.live
3820.it
*.3820.it
*.accounts.3820.it
*.admin.3820.it
*.adminer.3820.it
*.api.3820.it
*.checkout.3820.it
*.hostmaster.3820.it
*.mx.3820.it
*.remote.3820.it
*.springboot.3820.it
*.sso.3820.it
*.staging.3820.it
*.w.3820.it
*.www.3820.it
amazonasperu.com
*.amazonasperu.com
*.sitemap.amazonasperu.com
*.app.balletinmotion.biz
balletinmotion.biz
*.balletinmotion.biz
*.hostmaster.balletinmotion.biz
*.admin.identiguard.com
*.app.identiguard.com
*.backend.identiguard.com
*.demo.identiguard.com
*.dev.identiguard.com
*.hostmaster.identiguard.com
identiguard.com
*.identiguard.com
*.staging.identiguard.com
*.admin.inflate.it
*.ai.inflate.it
*.app.inflate.it
*.dashboard.inflate.it
*.dashboards.inflate.it
*.data.inflate.it
*.dev.inflate.it
inflate.it
*.inflate.it
*.owa.inflate.it
*.report.inflate.it
*.staging.inflate.it
*.39043326-e8ce-4b78-9863-9323d45c9a66.leukzwembad.be
*.af47a539-4244-4a83-9cef-21c50bb98cf9.leukzwembad.be
*.assets.leukzwembad.be
*.emv1.leukzwembad.be
leukzwembad.be
*.leukzwembad.be
*.test.leukzwembad.be
*.www.leukzwembad.be
pornvideoshost.xyz
*.pornvideoshost.xyz
*.www.pornvideoshost.xyz
*.cp.puntinginfo.com
*.hostmaster.puntinginfo.com
*.lists.puntinginfo.com
*.ns.puntinginfo.com
puntinginfo.com
*.puntinginfo.com
*.webmail.puntinginfo.com
*.ww1.puntinginfo.com
*.ww17.puntinginfo.com
*.www.puntinginfo.com
*.app.pykit.com
*.demo.pykit.com
*.mx.pykit.com
pykit.com
*.pykit.com
*.random.pykit.com
*.www.pykit.com
wofas.org
*.wofas.org
Other domains in certificate