Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=mapviral.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8E:A9:BC:D9:94:9E:A1:C4:35:86:92:67:98:33:65:A1:C2:F8:9D:87:D9:FC:50:C9:7C:AD:F7:AD:7F:80:80:D0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
adforgeinc.com
*.adforgeinc.com
*.analytics.adforgeinc.com
*.as.adforgeinc.com
*.c.adforgeinc.com
*.c7.adforgeinc.com
*.exchange1x32.adforgeinc.com
*.k8s.adforgeinc.com
*.my2.adforgeinc.com
*.pc.adforgeinc.com
*.ua-dev.adforgeinc.com
*.update.adforgeinc.com
*.ws.adforgeinc.com
*.wss.adforgeinc.com
*.ww25.adforgeinc.com
adelaidecashforcars.com.au
*.adelaidecashforcars.com.au
*.random.adelaidecashforcars.com.au
advancedpc.org
*.advancedpc.org
*.bubbabyte.advancedpc.org
*.cnbubbabyte.advancedpc.org
*.jagededge.advancedpc.org
*.www.advancedpc.org
anneberg.com
*.anneberg.com
*.sip.anneberg.com
balumba.com
*.balumba.com
*.ww17.balumba.com
covid19-trials.org
*.covid19-trials.org
*.ww38.covid19-trials.org
*.alsawai.digitom.app
digitom.app
*.digitom.app
*.gdgowdsdental.digitom.app
*.hps.digitom.app
*.mailer.digitom.app
*.social.digitom.app
*.webapp.digitom.app
economicsprinciples.org
*.economicsprinciples.org
*.ww38.economicsprinciples.org
*.arm.havlova.com
*.citrix.havlova.com
havlova.com
*.havlova.com
*.profile.havlova.com
*.static.havlova.com
mapviral.com
*.mapviral.com
minagi.org
*.minagi.org
*.pay.minagi.org
*.ww38.minagi.org
momentum-mag.org
*.momentum-mag.org
*.ww38.momentum-mag.org
newcitiessummit2017.org
*.newcitiessummit2017.org
*.www.newcitiessummit2017.org
*.news.nlgjaconnect.org
nlgjaconnect.org
*.nlgjaconnect.org
*.ww38.nlgjaconnect.org
*.dqxy.pcc15.org
pcc15.org
*.pcc15.org
*.ww38.pcc15.org
razrez.biz
*.razrez.biz
safemeeetup.us
*.safemeeetup.us
*.random.scwhistorians.org
scwhistorians.org
*.scwhistorians.org
*.ww38.scwhistorians.org
*.login.svetigeorgi.com
*.mobile.svetigeorgi.com
svetigeorgi.com
*.svetigeorgi.com
vemtecko.net
*.vemtecko.net
voxlist.net
*.voxlist.net
*.ww25.zonamusical.com
zonamusical.com
*.zonamusical.com
Other domains in certificate