Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=primehealthinnovations.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 16, 2026
Valid Until
July 15, 2026
35 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
28:43:6C:91:D4:3B:6D:64:C9:AD:9D:A5:78:4B:F6:3A:D8:F3:2C:31:0E:E4:00:47:BC:8D:09:0A:5A:D4:02:4D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
gentilsesso.com
*.gentilsesso.com
*.app.gentilsesso.com
*.backend.gentilsesso.com
*.demo.gentilsesso.com
*.notexistsapi.gentilsesso.com
*.staging.gentilsesso.com
*.superset.gentilsesso.com
*.workflow.gentilsesso.com
dating-a.com
*.dating-a.com
deltagivingsociety.com
*.deltagivingsociety.com
designereva.com
*.designereva.com
diethint.us
*.diethint.us
digagentic.com
*.digagentic.com
dku15.com
*.dku15.com
droplet.it.com
*.droplet.it.com
elitebijoux.com
*.elitebijoux.com
feminineway.com
*.feminineway.com
fghgdddgvss.art
*.fghgdddgvss.art
financiamiento-de-autos-sin-cuota-inicial-para-jovenes.today
*.financiamiento-de-autos-sin-cuota-inicial-para-jovenes.today
fudnro.vip
*.fudnro.vip
ganhandoonlinehj.online
*.ganhandoonlinehj.online
goldrwas.com
*.goldrwas.com
grewconnect.com
*.grewconnect.com
*.bitbucket.guestify.top
guestify.top
*.guestify.top
*.wiki.guestify.top
gummplus.us
*.gummplus.us
gutter-service-67434.click
*.gutter-service-67434.click
*.dashboard.iane.it
*.emi.iane.it
*.forecast.iane.it
*.hostmaster.iane.it
iane.it
*.iane.it
*.poesieita.iane.it
*.pornoita.iane.it
*.poste-ital.iane.it
*.posteital.iane.it
*.random.iane.it
*.report.iane.it
*.troieital.iane.it
*.vetrineital.iane.it
*.ftp.imobility.net
imobility.net
*.imobility.net
inspirationalquotes.it
*.inspirationalquotes.it
*.remote.inspirationalquotes.it
*.staging.inspirationalquotes.it
*.card.myaccuntaccess.com
myaccuntaccess.com
*.myaccuntaccess.com
*.ww25.myaccuntaccess.com
*.app.patton.me
*.ftp.patton.me
*.le.patton.me
*.m.patton.me
*.openpgpkey.patton.me
patton.me
*.patton.me
*.pop.patton.me
*.remote.patton.me
*.m.primehealthinnovations.com
primehealthinnovations.com
*.primehealthinnovations.com
*.admin.quickcharger.it
*.app.quickcharger.it
*.backend.quickcharger.it
quickcharger.it
*.quickcharger.it
*.webmail.quickcharger.it
Other domains in certificate