Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=taxacto.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 13, 2026
Valid Until
August 11, 2026 81 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F3:0F:F2:83:7E:B0:22:7C:E2:62:A5:B8:26:05:6A:B3:94:6A:30:27:58:00:E9:09:90:EC:9B:3E:A1:EC:4B:54
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
akeem.com *.akeem.com *.mail.akeem.com

Other domains in certificate

*.02dc1f8b-40be-4aff-93b3-5c8670894882.arcatadispensary.com *.48764202-1f0f-429e-88d8-f6b006e6321a.arcatadispensary.com *.6eb32518-55bd-4318-88da-d0bd5764aad1.arcatadispensary.com *.admin.arcatadispensary.com arcatadispensary.com *.arcatadispensary.com *.assets.arcatadispensary.com *.cloud.arcatadispensary.com *.demo.arcatadispensary.com *.dev.arcatadispensary.com *.mzvvwapp.arcatadispensary.com *.new.arcatadispensary.com *.pepparemote.arcatadispensary.com *.rd.arcatadispensary.com *.rds.arcatadispensary.com *.remote.arcatadispensary.com *.www.arcatadispensary.com
burgeonvestbick.com *.burgeonvestbick.com *.mail.burgeonvestbick.com *.www.burgeonvestbick.com
dog-magazine.com *.dog-magazine.com
genelab.com.au *.genelab.com.au
jackrusellterriers.com *.jackrusellterriers.com *.ww1.jackrusellterriers.com
*.cb00.kpal.top *.development.kpal.top *.flow.kpal.top *.flowise.kpal.top *.flowiseai.kpal.top *.hotfix.kpal.top kpal.top *.kpal.top *.mp.kpal.top *.production.kpal.top *.r.kpal.top *.random.kpal.top *.sandbox.kpal.top *.uat.kpal.top *.ww25.kpal.top
nomore.bet *.nomore.bet *.ww38.nomore.bet
oioioi.com.au *.oioioi.com.au
*.8b0dddce-2bcd-4dae-aa7b-5bc8917d7aba.physiqueathletes.com *.admin.physiqueathletes.com *.api.physiqueathletes.com *.app.physiqueathletes.com *.b3f4e229-4283-49cf-be33-ff38c867017c.physiqueathletes.com *.backend.physiqueathletes.com *.backup.physiqueathletes.com *.dde762c1-0f23-4543-aba6-fa3f7f44ee8d.physiqueathletes.com *.dev.physiqueathletes.com *.ead.physiqueathletes.com *.home.physiqueathletes.com *.m.physiqueathletes.com *.mail.physiqueathletes.com *.mjhwsbackend.physiqueathletes.com *.mobile.physiqueathletes.com *.news.physiqueathletes.com physiqueathletes.com *.physiqueathletes.com *.remote.physiqueathletes.com *.reporting.physiqueathletes.com *.staging.physiqueathletes.com *.uat.physiqueathletes.com *.uckqbmobile.physiqueathletes.com *.ukbdmizwqsbackup.physiqueathletes.com *.vpn.physiqueathletes.com *.wap.physiqueathletes.com *.web.physiqueathletes.com *.www.physiqueathletes.com
*.ads.syrcause.com syrcause.com *.syrcause.com *.ww38.syrcause.com
taxacto.com *.taxacto.com *.ww25.taxacto.com *.www.taxacto.com
telefonoclientes.co *.telefonoclientes.co *.ww38.telefonoclientes.co