Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=gujjar.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 06, 2026
Valid Until
September 04, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:27:A7:44:BC:96:8E:CE:C4:D8:19:F0:1B:E4:C0:AC:49:72:41:4E:72:D2:94:5D:F3:36:2C:8E:1C:DC:A8:99
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
4345.com *.4345.com *.16.4345.com *.42.4345.com *.9.4345.com *.ee.4345.com *.vlu.4345.com *.ww.4345.com *.zm.4345.com

Other domains in certificate

3jyajza5cy.com *.3jyajza5cy.com *.lwesoes.3jyajza5cy.com
addressfinancial.com *.addressfinancial.com *.blog.addressfinancial.com *.prop.addressfinancial.com *.yzv1ppncf1j8imrq.addressfinancial.com
*.cloud.crnf.org crnf.org *.crnf.org *.fbzckvdcxt.crnf.org
feuerhaken.com *.feuerhaken.com *.outlook.feuerhaken.com *.wp.feuerhaken.com
*.admin.fmovirs.co *.bigdata.fmovirs.co fmovirs.co *.fmovirs.co *.metric.fmovirs.co *.prod.fmovirs.co *.reporting.fmovirs.co *.superset.fmovirs.co *.wildcard.fmovirs.co *.ww1.fmovirs.co *.ww16.fmovirs.co *.ww2.fmovirs.co *.ww4.fmovirs.co *.www4.fmovirs.co
*.bhoomi.gujjar.com gujjar.com *.gujjar.com *.htpp.gujjar.com *.krishchawda.gujjar.com *.mukesh.gujjar.com *.pmln.gujjar.com *.rashid.gujjar.com *.sattar.gujjar.com *.shahzad.gujjar.com *.sony.gujjar.com
*.americanexpress.heathequity.com *.enrollment.heathequity.com heathequity.com *.heathequity.com *.member.heathequity.com *.my.heathequity.com *.pwc.heathequity.com *.www.heathequity.com
*.beta.hitomi.al *.dashboard.hitomi.al *.development.hitomi.al hitomi.al *.hitomi.al *.hostmaster.hitomi.al *.mailhost.hitomi.al *.reporting.hitomi.al *.ww38.hitomi.al *.www.hitomi.al
*.demo.jawabsoal.live jawabsoal.live *.jawabsoal.live *.m.jawabsoal.live *.sitemap.jawabsoal.live *.superset.jawabsoal.live *.test.jawabsoal.live *.www.jawabsoal.live
*.comune.renovate.com.au *.insight.renovate.com.au *.mail.renovate.com.au renovate.com.au *.renovate.com.au *.staging.renovate.com.au *.ww16.renovate.com.au *.ww25.renovate.com.au *.ww38.renovate.com.au
*.bdoi.vintagebutterfly.com *.sitemap.vintagebutterfly.com vintagebutterfly.com *.vintagebutterfly.com