76/100 SECURITY SCORE

Certificate Information

Subject
CN=forthwpeople.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 13, 2026
Valid Until
April 13, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
46:9C:4E:F8:99:A4:BB:4A:B1:F7:DA:59:C0:25:1A:89:C1:0F:BC:0E:65:80:0C:AF:71:DE:6A:29:2F:E7:29:01
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
forthwpeople.com *.forthwpeople.com *.activesync.forthwpeople.com *.sync.forthwpeople.com

Other domains in certificate

301031.cc *.301031.cc
*.access.davisvision.co *.anyconnect.davisvision.co *.anywhere.davisvision.co *.apps.davisvision.co *.auth.davisvision.co *.axjbdnug.davisvision.co *.citrix.davisvision.co *.connect.davisvision.co *.ctphfzrb.davisvision.co davisvision.co *.davisvision.co *.djvrqgoh.davisvision.co *.dzjopncm.davisvision.co *.ebcjmztl.davisvision.co *.ehcskpgy.davisvision.co *.email.davisvision.co *.emv1.davisvision.co *.ffkmvfortinet.davisvision.co *.foktamid.davisvision.co *.ftp.davisvision.co *.gp.davisvision.co *.ido.davisvision.co *.idoc.davisvision.co *.imap.davisvision.co *.imap2.davisvision.co *.jouxsgrl.davisvision.co *.mail.davisvision.co *.mail1.davisvision.co *.mail2.davisvision.co *.mailout.davisvision.co *.mailserver.davisvision.co *.microsite.davisvision.co *.mlfteigx.davisvision.co *.mx.davisvision.co *.mx2.davisvision.co *.mxzvgybn.davisvision.co *.notexistspop3.davisvision.co *.notexistsspam.davisvision.co *.ns.davisvision.co *.owa.davisvision.co *.palovpn.davisvision.co *.poczta.davisvision.co *.pop.davisvision.co *.pop3.davisvision.co *.remote.davisvision.co *.server.davisvision.co *.sitemaps.davisvision.co *.smtp.davisvision.co *.smtpauth.davisvision.co *.smtpmail.davisvision.co *.smtps.davisvision.co *.spam.davisvision.co *.ssl.davisvision.co *.ugwtzkdb.davisvision.co *.ujhzmfco.davisvision.co *.vpn.davisvision.co *.webmail.davisvision.co *.wyvxhkdz.davisvision.co *.xjyfehqv.davisvision.co *.xtyejkzd.davisvision.co
jmweston.online *.jmweston.online *.ww25.jmweston.online
*.http.mshaa.org mshaa.org *.mshaa.org *.posta.mshaa.org *.wew.mshaa.org *.ww38.mshaa.org
play-pix.bet *.play-pix.bet
portalrooms.com *.portalrooms.com
radii.garden *.radii.garden
*.emv1.wonder-woman.info *.prod.wonder-woman.info wonder-woman.info *.wonder-woman.info *.ww25.wonder-woman.info
xn--brutigammoden-cfb.de *.xn--brutigammoden-cfb.de