Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=travelheater.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 15, 2026
Valid Until
August 13, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:54:3B:28:BC:59:B3:C5:48:7E:F4:44:44:B7:F6:E5:39:38:34:37:20:87:15:B1:E1:D6:9A:68:16:DD:2A:2E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
ai-ka.com *.ai-ka.com *.8z12m6lude1owf88.ai-ka.com *.accounts.ai-ka.com *.api.ai-ka.com *.app.ai-ka.com *.cloud.ai-ka.com *.hostmaster.ai-ka.com *.intranet.ai-ka.com *.krixw8z12m6lude1owf88.ai-ka.com *.mail.ai-ka.com *.portal.ai-ka.com *.shop.ai-ka.com

Other domains in certificate

15letters.com *.15letters.com *.ww16.15letters.com *.ww25.15letters.com *.ww38.15letters.com
acrevasavings.com *.acrevasavings.com *.capitalnexus.acrevasavings.com
assetprotection.com.au *.assetprotection.com.au *.random.assetprotection.com.au *.wildcard.assetprotection.com.au *.ww11.assetprotection.com.au *.ww38.assetprotection.com.au
bedfordshoplocal.com *.bedfordshoplocal.com *.login.bedfordshoplocal.com *.secure.bedfordshoplocal.com
berrowcourt.co.uk *.berrowcourt.co.uk *.www.berrowcourt.co.uk
brickbody.com *.brickbody.com *.ww16.brickbody.com *.ww25.brickbody.com
destinym.com *.destinym.com *.mail.destinym.com
*.dhl.espbenefit.com espbenefit.com *.espbenefit.com *.olx-uz.espbenefit.com *.sberbank.espbenefit.com
genitalia.com.au *.genitalia.com.au *.ww38.genitalia.com.au
halte66-parkir.cfd *.halte66-parkir.cfd *.i51qg.halte66-parkir.cfd *.kwid9.halte66-parkir.cfd *.rkuvx.halte66-parkir.cfd *.snx68.halte66-parkir.cfd
homelnvestors.com *.homelnvestors.com *.m.homelnvestors.com
homeloanchooser.com.au *.homeloanchooser.com.au *.wildcard.homeloanchooser.com.au
iskardorse.com *.iskardorse.com *.ww16.iskardorse.com
*.autodiscover.megaconferencejr.org *.cpanel.megaconferencejr.org *.mail.megaconferencejr.org megaconferencejr.org *.megaconferencejr.org *.old.megaconferencejr.org *.webdisk.megaconferencejr.org *.webmail.megaconferencejr.org *.www.megaconferencejr.org
n10shopusa.com *.n10shopusa.com *.www.n10shopusa.com
parkingtoolboxntx.org *.parkingtoolboxntx.org *.ww25.parkingtoolboxntx.org *.ww38.parkingtoolboxntx.org
*.media.sxjjj.com sxjjj.com *.sxjjj.com
travelheater.com *.travelheater.com *.wwww.travelheater.com
*.qa.yzemballage.com yzemballage.com *.yzemballage.com