Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=58986.my
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 12, 2026
Valid Until
August 10, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
13:C9:EF:EF:C2:6D:B9:D8:38:35:7B:5C:1B:DC:3E:C6:34:97:76:30:69:2B:FC:41:94:6D:0B:18:A1:1D:70:29
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
xfhapp.com *.xfhapp.com

Other domains in certificate

58986.my *.58986.my
91611.mobi *.91611.mobi
chinesefinancialnews.com *.chinesefinancialnews.com
chzxt.com *.chzxt.com
cookingarea.com *.cookingarea.com
corelynk.info *.corelynk.info
cornerstonecontent.co.uk *.cornerstonecontent.co.uk
endorser.xyz *.endorser.xyz
getpantero.biz *.getpantero.biz
grows.info *.grows.info
marriages.info *.marriages.info
ncrdbuk.com *.ncrdbuk.com
neovestcapitals.com *.neovestcapitals.com
optimumfoodchoice.food *.optimumfoodchoice.food
ozonesterling.com *.ozonesterling.com
pfadkolleg.de *.pfadkolleg.de
raysdecandrefurb.info *.raysdecandrefurb.info
*.319da4f2-aadf-4ffe-977e-8569430f1906.sunmall-clinic.com *.64655dc4d98a45339ee45956cbae2225.sunmall-clinic.com *.652e3bf5-717c-4709-a7ee-65abb8c9539f.sunmall-clinic.com *.a.sunmall-clinic.com *.api.sunmall-clinic.com *.app.sunmall-clinic.com *.bb.sunmall-clinic.com *.cdnassets.sunmall-clinic.com *.cincinnati.sunmall-clinic.com *.cld.sunmall-clinic.com *.cloud.sunmall-clinic.com *.d1c83aef-2ecf-4399-b324-3622acedb8e3.sunmall-clinic.com *.d3a616d3-a027-4728-9b60-69f90f76f9c5.sunmall-clinic.com *.d4d4beb3-3515-4955-be42-e8bca242143b.sunmall-clinic.com *.de5af5e45c41481eb50e404430d28f0c.sunmall-clinic.com *.docs.sunmall-clinic.com *.e28b567f-e298-4e8e-b9c9-05d6ba443d66.sunmall-clinic.com *.external.sunmall-clinic.com *.fonts.sunmall-clinic.com *.hostmaster.sunmall-clinic.com *.m.sunmall-clinic.com *.mqrztportal.sunmall-clinic.com *.pulasxib.sunmall-clinic.com *.rd.sunmall-clinic.com *.rds.sunmall-clinic.com *.rdweb.sunmall-clinic.com *.remote.sunmall-clinic.com *.rncwsspf03.sunmall-clinic.com *.secure.sunmall-clinic.com *.setup.sunmall-clinic.com *.sharepoint.sunmall-clinic.com *.spf01.sunmall-clinic.com *.spf03.sunmall-clinic.com *.spf04.sunmall-clinic.com *.spf05.sunmall-clinic.com *.static-live.sunmall-clinic.com sunmall-clinic.com *.sunmall-clinic.com *.testing.sunmall-clinic.com *.vn.sunmall-clinic.com *.vpn.sunmall-clinic.com *.www.sunmall-clinic.com
tranewskiappz.com *.tranewskiappz.com
washington.pics *.washington.pics
wdhmzyvip7.top *.wdhmzyvip7.top
xiiloo.com *.xiiloo.com
yoloil.com *.yoloil.com