Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=docool.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 03, 2026
Valid Until
May 04, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:0C:05:58:5C:68:FD:76:37:A7:DB:BA:91:61:DC:67:06:48:4E:9F:B4:C7:6A:11:24:AF:9D:5C:FA:49:0C:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
vanamali.com
*.vanamali.com
*.events.vanamali.com
*.mkpk.vanamali.com
*.assets.docool.com
*.bqkinold.docool.com
*.connect.docool.com
*.crm.docool.com
*.demo.docool.com
docool.com
*.docool.com
*.f4e1w3mbxj.docool.com
*.forum.docool.com
*.fweejmail.docool.com
*.fxegsvpn.docool.com
*.hostmaster.docool.com
*.idfopm.docool.com
*.ifesgnew.docool.com
*.kbxkzstore.docool.com
*.kyrufxzalmrdp.docool.com
*.mail.docool.com
*.mobile.docool.com
*.outlook.docool.com
*.remote2.docool.com
*.shop.docool.com
*.smtp1.docool.com
*.tlyftfxegsvpn.docool.com
*.transparencia.docool.com
*.vpn.docool.com
*.web.docool.com
*.webvpn.docool.com
*.wiki.docool.com
*.wildcard.docool.com
*.xapp.docool.com
*.xzalmrdp.docool.com
*.20171.prachatalk.com
*.2fwww.prachatalk.com
*.app.prachatalk.com
*.at.prachatalk.com
*.blog.prachatalk.com
*.blogs.prachatalk.com
*.comtalk.prachatalk.com
*.comww.prachatalk.com
*.comwww.prachatalk.com
*.dir.prachatalk.com
*.extension.prachatalk.com
*.ftp.prachatalk.com
*.glitter.prachatalk.com
*.gwww.prachatalk.com
*.hello.prachatalk.com
*.home.prachatalk.com
*.image.prachatalk.com
*.images.prachatalk.com
*.img.prachatalk.com
*.m.prachatalk.com
*.mobi.prachatalk.com
*.pop.prachatalk.com
prachatalk.com
*.prachatalk.com
*.prachatalk.prachatalk.com
*.reader.prachatalk.com
*.sms.prachatalk.com
*.talk.prachatalk.com
*.th.prachatalk.com
*.tnawww.prachatalk.com
*.tuxido.prachatalk.com
*.upload.prachatalk.com
*.vww.prachatalk.com
*.vwww.prachatalk.com
*.w.prachatalk.com
*.w3w.prachatalk.com
*.wap.prachatalk.com
*.web.prachatalk.com
*.webboard.prachatalk.com
*.webmail.prachatalk.com
*.wew.prachatalk.com
*.wildcard.prachatalk.com
*.wqww.prachatalk.com
*.ww.prachatalk.com
*.ww2.prachatalk.com
*.wwsw.prachatalk.com
*.www1.prachatalk.com
*.www2.prachatalk.com
*.www3.prachatalk.com
*.wwwe.prachatalk.com
*.wwww.prachatalk.com
*.wxebmail.prachatalk.com
*.xn--www-qxa.prachatalk.com
*.xxm.prachatalk.com
Other domains in certificate