Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=rest.lindecdn.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 22, 2026
Valid Until
April 22, 2026
76 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F9:AD:A5:61:8E:D3:A8:31:27:46:5B:7A:66:DD:C2:53:DF:AB:E6:F0:3C:CD:47:5D:21:17:F2:98:00:35:6C:B7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
admin.speedzy.shop
resto.speedzy.shop
2020.systems
www.7chat.live
api.marquee.activecove.com
www.advisor.im
aircraftstudios.com
alex-wendler.de
www.andrejus.uk
www.aquavolt.net
aryantechworld.com
app.ascc.me
aurenixlabs.com
dev.babyjourney.se
www.banazak.io
barbaravokatis.com
bela.basehit.com.br
chat.binepay.com
app-staging.bushidoco.de
cardli.app
carmotiverewards.com
gemini.castoredc.org
proxy-test.cipherhealth.com
www.clipboardextension.com
judies.opendream.co.th
dbit.com.pl
authentication.floweradvisor.com.sg
combo-finder.com
cshsitehub.com
auth.dantebus.com
deltacalendar.com
chat.digitalclub.online
duechat.biz
www.duvaye.com
www.dveri-renessans.ru
xn--operatr-v1a.entur.org
eurofloor.lt
www.eurofloor.lt
www.fabriciosales.com.br
whereiskidsuper.foda.farm
auth.hottub.fractal.is
www.fuentram.org
www.admin.gargya.in
hesthest.com
dashboard.maka-bane.huygens.io
iicuwaterloo.com
iktiarshovo.com
wid.otk.in.ua
www.incubakor.org
passport.instant.im
recipes.joeloeppky.com
todo.kaiprince.xyz
kinhthanhconggiao.com
myanimal.kokkiri.kr
dev.kreador.io
rest.lindecdn.com
linuxisfreak.in
medtrackmedical.in
www.mereo.tech
mitset.tech
myscreenon.work
auth.naijaworld.online
app.controle-eventos.nawebb.com
ngjunsheng.com
invite.okto.tech
freshmarket-ops.oneretail.vn
app.staging.orlikfy.pl
www.pretitle.com
onetmc.qzz.io
marketplace.requid.com
cargo-ranger.screen-logi.com
www.selvabankers.in
www.sidelabs.com
minigolf.soturimedia.in
stg-mambo.iframe.survive.bet
swan-frere.fr
www.the3djewel.com
app.tickethub.com.br
todly.in
totallydifferent.co.nz
order.traitte.store
www.order.traitte.store
www.vartis.lt
staging.sandbox.webedia.tech
www.xn--7bi.je
admin.dev.xn--hier-jra.com
translator.dev.xn--hier-jra.com
r.xn--legislaie-wmd.ro
www.xn--lisadzulham-k976j.ws
xn--lisadzulham-k976j.ws
xn--meistermssenaufsteigen-zlc.de
www.xn--mingenoptrning-9ib.dk
www.xn--mw-xkab.de
www.xn--penkilde-8za.org
www.xn--pskejakten-15a.no
xn--szkoawzasigu-ewb18c.pl
xn--y8j7b5cn1g837thhi08gz93h.com
red.ynriver.com
cv.yosiftware.es
dia.yosiftware.es
Other domains in certificate