76/100 SECURITY SCORE

Certificate Information

Subject
CN=sekhnaa.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 16, 2026
Valid Until
August 14, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7B:A6:6C:AF:E0:9D:10:B0:78:33:41:E4:4E:D4:13:A2:D8:38:74:16:D4:8B:CF:8C:BF:21:59:88:BB:1D:8D:17
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
devries.studio *.devries.studio *.app.devries.studio *.pop.devries.studio *.shop.devries.studio *.sitemaps.devries.studio *.smtp.devries.studio *.store.devries.studio *.www.devries.studio

Other domains in certificate

*.a5.biturl.io *.account.biturl.io *.admin.biturl.io *.api.biturl.io *.app.biturl.io *.apps.biturl.io *.assets.biturl.io *.autodiscover.biturl.io *.backup.biturl.io biturl.io *.biturl.io *.box.biturl.io *.cdn.biturl.io *.cp7.biturl.io *.cpanel.biturl.io *.dashboard.biturl.io *.dbstat.biturl.io *.demo.biturl.io *.dev.biturl.io *.dragonball.biturl.io *.hostmaster.biturl.io *.log.biturl.io *.m.biturl.io *.mail.biturl.io *.mailer.biturl.io *.marketing.biturl.io *.mta-sts.biturl.io *.music.biturl.io *.p7.biturl.io *.qa.biturl.io *.secure.biturl.io *.sitemap.biturl.io *.staging.biturl.io *.stg.biturl.io *.test.biturl.io *.uat.biturl.io *.v1.biturl.io *.v2.biturl.io *.web.biturl.io *.webdisk.biturl.io *.webmail.biturl.io *.wildcard.biturl.io *.ws.biturl.io *.wss.biturl.io *.ww25.biturl.io *.ww38.biturl.io *.www.biturl.io
*.api.daporkhashman.info *.app.daporkhashman.info *.assets.daporkhashman.info *.backup.daporkhashman.info daporkhashman.info *.daporkhashman.info *.dashboard.daporkhashman.info *.demo.daporkhashman.info *.gtzejfru.daporkhashman.info *.hostmaster.daporkhashman.info *.marketing.daporkhashman.info *.qa.daporkhashman.info *.secure.daporkhashman.info *.staging.daporkhashman.info
hayatagidel.org *.hayatagidel.org *.www.hayatagidel.org
healthstealable.store *.healthstealable.store *.www.healthstealable.store
inform-discography.site *.inform-discography.site *.www.inform-discography.site
onlinehomeacademy.com *.onlinehomeacademy.com
sekhnaa.com *.sekhnaa.com *.smtp.sekhnaa.com *.www.sekhnaa.com
*.m.xn--vv5a.com *.sitemap.xn--vv5a.com xn--vv5a.com *.xn--vv5a.com