Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=rockfrogs.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 09, 2026
Valid Until
April 09, 2026 43 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
29:C2:41:48:94:C8:26:90:B1:32:D8:8C:BD:DE:F9:CB:E2:A7:78:7E:33:1F:94:B8:FB:3C:1E:B6:B3:CF:E3:CA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
witsee.io *.witsee.io *.azure-bench.witsee.io *.azure.witsee.io *.gcp.witsee.io *.k8s.witsee.io *.ovh.witsee.io *.pages.witsee.io *.paris.witsee.io

Other domains in certificate

agedh.cc *.agedh.cc
*.2agrny.ahmdtech.online *.agrny.ahmdtech.online ahmdtech.online *.ahmdtech.online
chessfreak.net *.chessfreak.net *.ww25.chessfreak.net
cityfoodconcepts.com *.cityfoodconcepts.com *.sitemap.cityfoodconcepts.com *.ww12.cityfoodconcepts.com *.www.cityfoodconcepts.com
desgas.com *.desgas.com *.random.desgas.com *.remote.desgas.com *.rustore.desgas.com *.webmail.desgas.com *.ww1.desgas.com *.ww25.desgas.com *.ww38.desgas.com *.www.desgas.com
donggai.pro *.donggai.pro *.sitemap.donggai.pro *.ww25.donggai.pro *.www.donggai.pro
drawnnude.com *.drawnnude.com *.random.drawnnude.com *.sexcartoons.drawnnude.com
goldinvestments393091.icu *.goldinvestments393091.icu
goldinvestments832980.icu *.goldinvestments832980.icu
ibommatelugu.com *.ibommatelugu.com *.sitemap.ibommatelugu.com *.ww25.ibommatelugu.com
*.hotfix.iusoattracte.xyz iusoattracte.xyz *.iusoattracte.xyz *.tgtps.iusoattracte.xyz
kaime.me *.kaime.me *.ww25.kaime.me
kashmirgpt.com *.kashmirgpt.com *.ww38.kashmirgpt.com
livegirls.club *.livegirls.club *.sitemap.livegirls.club
mhzjdm.cc *.mhzjdm.cc
*.cpcontacts.mosoftvn.com *.mail.mosoftvn.com mosoftvn.com *.mosoftvn.com *.random.mosoftvn.com *.test.mosoftvn.com *.website.mosoftvn.com
*.m.mybaowen.com mybaowen.com *.mybaowen.com
powertopeople.org *.powertopeople.org *.random.powertopeople.org *.secure.powertopeople.org
pudgyfdn.capital *.pudgyfdn.capital
*.dev.rockfrogs.org rockfrogs.org *.rockfrogs.org *.test.rockfrogs.org *.volcom.rockfrogs.org
stxtdz.cc *.stxtdz.cc
thegenius.pro *.thegenius.pro