Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=desi2023.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 01, 2026
Valid Until
April 01, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
18:45:0D:53:02:73:AB:96:16:C3:CB:F0:77:80:1E:98:8C:18:95:90:C8:69:5E:E0:DA:05:F5:C6:E7:64:B9:AC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
xtime.co
*.xtime.co
*.ww25.xtime.co
amwca.org
*.amwca.org
*.beta138.amwca.org
braillesc.org
*.braillesc.org
*.bungincampang.desacantik.online
desacantik.online
*.desacantik.online
desi2023.com
*.desi2023.com
*.files.desi2023.com
digntyhealth.org
*.digntyhealth.org
*.snmh.digntyhealth.org
*.team.digntyhealth.org
eagames115.com
*.eagames115.com
*.m.eagames115.com
empacadorasanmarcos.com
*.empacadorasanmarcos.com
*.webmail.empacadorasanmarcos.com
*.admin.farooqhospital.online
*.adminpanel.farooqhospital.online
*.app.farooqhospital.online
*.autodiscover.farooqhospital.online
*.cpanel.farooqhospital.online
farooqhospital.online
*.farooqhospital.online
*.webdisk.farooqhospital.online
*.webmail.farooqhospital.online
finnovel.io
*.finnovel.io
*.my.finnovel.io
*.staging.finnovel.io
*.trade.finnovel.io
gaffair.com
*.gaffair.com
habconline.org
*.habconline.org
*.ww25.habconline.org
iberiq.com
*.iberiq.com
*.forum.islesofeventide.com
islesofeventide.com
*.islesofeventide.com
*.maintenance.islesofeventide.com
kirklamds.com
*.kirklamds.com
*.random.kirklamds.com
*.ww25.kirklamds.com
*.ww38.kirklamds.com
kozak.cc
*.kozak.cc
*.ww25.kozak.cc
occasional.com.au
*.occasional.com.au
*.ww25.occasional.com.au
*.gitlab.opther.eu
opther.eu
*.opther.eu
playhousetheatre.com.au
*.playhousetheatre.com.au
*.ww38.playhousetheatre.com.au
*.correo.proveedoresdeferreterias.co
proveedoresdeferreterias.co
*.proveedoresdeferreterias.co
saaahr.com
*.saaahr.com
*.secure7.saaahr.com
*.cartile.similarity.info
*.imap.similarity.info
similarity.info
*.similarity.info
*.sitemaps.similarity.info
*.ww25.similarity.info
*.bursaries.spae.io
*.mail.spae.io
spae.io
*.spae.io
*.ww25.spae.io
*.ww38.spae.io
*.mail.tudorrosetearooms.co.uk
tudorrosetearooms.co.uk
*.tudorrosetearooms.co.uk
*.webdisk.tudorrosetearooms.co.uk
xxxcent.com
*.xxxcent.com
Other domains in certificate