76/100 SECURITY SCORE

Certificate Information

Subject
CN=nedamagazine.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 25, 2026
Valid Until
August 23, 2026 78 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:13:CC:F5:90:26:EF:CA:89:4B:7D:1A:3F:C4:DC:8C:A1:A6:4D:E1:F5:2B:A1:6E:D3:41:A4:ED:9B:B7:EA:F8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
linca.tech *.linca.tech *.882edd43-c438-42db-ba9e-e7d4357e74ce.linca.tech *.api.linca.tech *.app.linca.tech *.backup.linca.tech *.crvcndbuqduat.linca.tech *.dashboard.linca.tech *.marketing.linca.tech *.w.linca.tech

Other domains in certificate

30870.photo *.30870.photo *.com.30870.photo
appguidemm.com *.appguidemm.com *.facebook.appguidemm.com *.ww25.appguidemm.com
*.32.assettopirate.xyz assettopirate.xyz *.assettopirate.xyz *.cloud.assettopirate.xyz *.cpcalendars.assettopirate.xyz *.dev.assettopirate.xyz *.racing.assettopirate.xyz *.webdisk.assettopirate.xyz
*.8ab017b9-8324-4536-b161-1ba6a3d991ad.audioknigi-online.pro audioknigi-online.pro *.audioknigi-online.pro *.ww38.audioknigi-online.pro
canvasshoes.com.au *.canvasshoes.com.au
cbcfygq576.vip *.cbcfygq576.vip
*.ar.diyimedical.com *.de.diyimedical.com diyimedical.com *.diyimedical.com *.es.diyimedical.com *.fr.diyimedical.com *.global.diyimedical.com *.gr.diyimedical.com *.hi.diyimedical.com *.jp.diyimedical.com *.kr.diyimedical.com *.ms.diyimedical.com *.nl.diyimedical.com *.se.diyimedical.com *.th.diyimedical.com *.tr.diyimedical.com
ebuyshopecomm.info *.ebuyshopecomm.info *.mwhviw.ebuyshopecomm.info
eubv.com *.eubv.com *.miller-floor.eubv.com *.sky.eubv.com *.ww25.eubv.com *.ww38.eubv.com
gedai.com *.gedai.com *.members.gedai.com
*.dev.moffitt.com.au *.magento.moffitt.com.au moffitt.com.au *.moffitt.com.au *.ww16.moffitt.com.au
*.l14sch.myopenasi.com myopenasi.com *.myopenasi.com
*.demo.nedamagazine.net *.m.nedamagazine.net *.mx.nedamagazine.net nedamagazine.net *.nedamagazine.net *.q2cbtc.nedamagazine.net *.random.nedamagazine.net *.staging.nedamagazine.net *.testing.nedamagazine.net *.www.nedamagazine.net
*.app.paycheckonline.com paycheckonline.com *.paycheckonline.com
tvpassport.org *.tvpassport.org *.ww16.tvpassport.org
*.app.woodyoufurniture.com woodyoufurniture.com *.woodyoufurniture.com
yykk26.me *.yykk26.me