Open
Cached
·
just now
89/100
SECURITY SCORE
Certificate Information
Subject
CN=directory.gaiasmc.org
Issuer
C=US, O=Let's Encrypt, CN=E7
Valid From
January 02, 2026
Valid Until
April 02, 2026
65 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
E7:D6:66:0A:9A:9E:F8:98:4D:D5:D9:8D:D4:E3:43:AC:FE:E7:C2:81:90:81:CC:05:7C:18:92:79:96:97:2B:35
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=64072000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
78 domains
apps.effvision.com
directory.2l2o.com
zoho.accentiostudios.com
zoho.advancesafetyequip.com
help.aktasolutions.com
apps.alfurqan.academy
directory.appmart.ng
crm.belago.com
iam.belpanye.com
bipp.bippfinance.com
directory.bitingbugs.net
one.bosstaxes.com
directory.bridgenext.io
apps.chfa.org
app.clarksterlingtx.com
directory.nikkisomedical.co.th
directory.basic.com.fj
directory.ssa.com.sa
app.creativeoh.org
zohoadmin.csealbchapter2.com
directory.csoesports.com
app.ct.sa
directory.datascience.me
directory.dayalstreet.com
app.designedconviction.com
directory.dnvcleaning.com
directory.dreambuilders.today
directory.faisalalsharif.co
analytics.fami.com
directory.gaiasmc.org
zd.gproare.com
directory.gpslvn.iq
directory.gwmst.com
dash.hae.run
dashboard.huber-home.org
zoho.ith.hu
directory.jdk.de
app.klayytech.com
apps.lewisit.io
mails.m2009.org
apps.magnumestate.com
crm.mazada-tours.com
apps.mkenterprise.mx
site24x7.mundoopen.com.br
directory.nemesisgroup.net
directory.nextgenitad.com
email.opti7.com
directory.osbee.com
directory.outerblox.xyz
zdir.pallimous.com
hub.phanaint.mx
directory.r2redes.com.br
directory.reedercpagroup.com
helpdesk.rrmetro.org
zoho.seasonsfl.com
directory.skyriver.com
directroy.smarteq-sa.com
directory.sommerlawn.com
co.speenar.com
zd.stantonlocke.com
apps.starrenterprise.net
directory.stutzen.me
crm.synchroworks.net
directory.synthaly.com
ad.techdrivesolution.com
directory.teknoir.ai
directory.thumbfinancial.biz
login.timberviewtech.com
app.trace.support
directory.travelbug.consulting
directory.traxon.media
zohodirectory.trinias.co.jp
directory.triplicategroup.com
dir.voyzz.com
directory.wiseintro.com
console.wuflestad.work
directory.mlptechnerd01.x10.mx
broker.xchainltd.com
Other domains in certificate