89/100 SECURITY SCORE

Certificate Information

Subject
CN=directory.gaiasmc.org
Issuer
C=US, O=Let's Encrypt, CN=E7
Valid From
January 02, 2026
Valid Until
April 02, 2026 65 days
Public Key
ECDSA 256 bit (P-256) Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
E7:D6:66:0A:9A:9E:F8:98:4D:D5:D9:8D:D4:E3:43:AC:FE:E7:C2:81:90:81:CC:05:7C:18:92:79:96:97:2B:35
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=64072000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Configured (Restricts certificate issuance)
Current Issuer
Authorized (Matches CAA policy)
Recommendations
  • Consider using critical flag (flags=128) for stricter CAA enforcement
  • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
  • Consider adding 'issuewild' records to control wildcard certificate issuance

Subject Alternative Names

78 domains
apps.effvision.com

Other domains in certificate

directory.2l2o.com
zoho.accentiostudios.com
zoho.advancesafetyequip.com
help.aktasolutions.com
apps.alfurqan.academy
directory.appmart.ng
crm.belago.com
iam.belpanye.com
bipp.bippfinance.com
directory.bitingbugs.net
one.bosstaxes.com
directory.bridgenext.io
apps.chfa.org
app.clarksterlingtx.com
directory.nikkisomedical.co.th
directory.basic.com.fj
directory.ssa.com.sa
app.creativeoh.org
zohoadmin.csealbchapter2.com
directory.csoesports.com
app.ct.sa
directory.datascience.me
directory.dayalstreet.com
app.designedconviction.com
directory.dnvcleaning.com
directory.dreambuilders.today
directory.faisalalsharif.co
analytics.fami.com
directory.gaiasmc.org
zd.gproare.com
directory.gpslvn.iq
directory.gwmst.com
dash.hae.run
dashboard.huber-home.org
zoho.ith.hu
directory.jdk.de
app.klayytech.com
apps.lewisit.io
mails.m2009.org
apps.magnumestate.com
crm.mazada-tours.com
apps.mkenterprise.mx
site24x7.mundoopen.com.br
directory.nemesisgroup.net
directory.nextgenitad.com
email.opti7.com
directory.osbee.com
directory.outerblox.xyz
zdir.pallimous.com
hub.phanaint.mx
directory.r2redes.com.br
directory.reedercpagroup.com
helpdesk.rrmetro.org
zoho.seasonsfl.com
directory.skyriver.com
directroy.smarteq-sa.com
directory.sommerlawn.com
co.speenar.com
zd.stantonlocke.com
apps.starrenterprise.net
directory.stutzen.me
crm.synchroworks.net
directory.synthaly.com
ad.techdrivesolution.com
directory.teknoir.ai
directory.thumbfinancial.biz
login.timberviewtech.com
app.trace.support
directory.travelbug.consulting
directory.traxon.media
zohodirectory.trinias.co.jp
directory.triplicategroup.com
dir.voyzz.com
directory.wiseintro.com
console.wuflestad.work
directory.mlptechnerd01.x10.mx
broker.xchainltd.com