76/100 SECURITY SCORE

Certificate Information

Subject
CN=vietflix.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 16, 2026
Valid Until
May 17, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:3C:66:47:33:50:BA:90:83:8B:CE:69:F2:ED:C1:2B:03:A5:55:2F:E8:68:AD:79:38:73:80:EE:5C:02:4E:3E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

85 domains
alemanas.com *.alemanas.com *.admin.alemanas.com *.api.alemanas.com *.auth.alemanas.com *.blog.alemanas.com *.ck02-b7c5dc7a03-a7630138.alemanas.com *.dev.alemanas.com *.hostmaster.alemanas.com *.m.alemanas.com *.mailserver.alemanas.com *.member.alemanas.com *.mta-sts.alemanas.com *.mx.alemanas.com *.pixels.alemanas.com *.relay.alemanas.com *.server.alemanas.com *.sitemap.alemanas.com *.sitemaps.alemanas.com *.staging.alemanas.com *.test.alemanas.com *.vpn.alemanas.com *.webmail.alemanas.com *.ww16.alemanas.com *.ww25.alemanas.com *.ww38.alemanas.com

Other domains in certificate

*.api.atanos.com atanos.com *.atanos.com *.blog.atanos.com *.crm.atanos.com *.mail.atanos.com *.ww11.atanos.com *.ww16.atanos.com *.ww38.atanos.com
*.bpm.hiphoptshirts.com *.hd.hiphoptshirts.com hiphoptshirts.com *.hiphoptshirts.com
*.hl.kahfi.com kahfi.com *.kahfi.com
*.explore.kfzabo.com *.explorer.kfzabo.com kfzabo.com *.kfzabo.com
*.admin.personaldeals.com *.app.personaldeals.com *.assets.personaldeals.com *.blog.personaldeals.com *.demo.personaldeals.com *.dev.personaldeals.com *.hostmaster.personaldeals.com *.m.personaldeals.com personaldeals.com *.personaldeals.com *.rdp.personaldeals.com *.remote.personaldeals.com *.shop.personaldeals.com *.ssl.personaldeals.com *.test.personaldeals.com *.vpn2.personaldeals.com *.ww1.personaldeals.com *.ww17.personaldeals.com *.ww25.personaldeals.com *.ww38.personaldeals.com *.www.personaldeals.com
*.autoconfig.vietflix.org vietflix.org *.vietflix.org *.ww25.vietflix.org
*.assets.wowpornstars.com *.backup.wowpornstars.com *.bdimwww3.wowpornstars.com *.cloud.wowpornstars.com *.mailer.wowpornstars.com *.marketing.wowpornstars.com *.smtp.wowpornstars.com *.staging.wowpornstars.com *.stg.wowpornstars.com *.uat.wowpornstars.com *.v2.wowpornstars.com *.web.wowpornstars.com wowpornstars.com *.wowpornstars.com