76/100 SECURITY SCORE

Certificate Information

Subject
CN=pronfind.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 03, 2026
Valid Until
July 02, 2026 53 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B8:F5:70:CD:81:A5:57:09:DF:A1:76:A5:49:04:5E:33:99:7E:9D:BA:CD:83:8E:8E:B2:FF:A3:43:A1:BA:1E:F8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
termofisher.com *.termofisher.com *.apps.termofisher.com *.ema.termofisher.com *.verinttwfmqun.termofisher.com

Other domains in certificate

*.8hy5t.91p1218.xyz 91p1218.xyz *.91p1218.xyz *.kwid9.91p1218.xyz *.nslow.91p1218.xyz *.v3ywp.91p1218.xyz *.v6j6e.91p1218.xyz *.vizaseq.91p1218.xyz
*.6cd9j.adventurousgardeninglife.xyz *.89wkp.adventurousgardeninglife.xyz *.96c54.adventurousgardeninglife.xyz adventurousgardeninglife.xyz *.adventurousgardeninglife.xyz *.dwij7.adventurousgardeninglife.xyz *.kwid9.adventurousgardeninglife.xyz *.ndifg.adventurousgardeninglife.xyz *.q2s8t.adventurousgardeninglife.xyz
antipasto.com.au *.antipasto.com.au
antiquitytissuepod.com *.antiquitytissuepod.com
btl.au *.btl.au *.pi.btl.au
bunaziuafagaras.info *.bunaziuafagaras.info *.random.bunaziuafagaras.info *.webdisk.bunaziuafagaras.info *.ww16.bunaziuafagaras.info
carnetdebord-lecturejeunesse.net *.carnetdebord-lecturejeunesse.net
domainedesandeols.com *.domainedesandeols.com *.ww25.domainedesandeols.com
extratuf.com *.extratuf.com *.ww25.extratuf.com
gel-naegel.de *.gel-naegel.de
karimuntravel.com *.karimuntravel.com *.mail.karimuntravel.com *.maxauthage0openidreturnt2fgpfyourstore.karimuntravel.com *.maxauthageopenidreturntfgpfyourstore.karimuntravel.com *.shownons.karimuntravel.com
kidsdoworksheets.com *.kidsdoworksheets.com
*.cpcalendars.littlebeehive.com.au littlebeehive.com.au *.littlebeehive.com.au *.mail.littlebeehive.com.au *.random.littlebeehive.com.au *.webmail.littlebeehive.com.au *.ww38.littlebeehive.com.au
*.ap-southeast-2.mypurecloud.au *.apps.mypurecloud.au *.login.mypurecloud.au mypurecloud.au *.mypurecloud.au *.wildcard.mypurecloud.au *.ww38.mypurecloud.au
private-krankenvericherung.de *.private-krankenvericherung.de
pronfind.org *.pronfind.org
*.admin.supportavg.com supportavg.com *.supportavg.com *.ww1.supportavg.com
*.hostmaster.trazodon.de trazodon.de *.trazodon.de
*.aisha.velazquwez.com *.anastasia.velazquwez.com *.destinee.velazquwez.com *.fatima.velazquwez.com *.kiersten.velazquwez.com *.lesly.velazquwez.com *.reina.velazquwez.com *.stevie.velazquwez.com *.tatum.velazquwez.com velazquwez.com *.velazquwez.com
veracidad.com *.veracidad.com