Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cdgadvisor.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 10, 2026
Valid Until
September 08, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
36:0E:1E:D6:98:DE:47:40:79:C0:6F:78:0B:BA:11:20:B5:15:64:2D:90:F3:80:21:1B:82:F9:5F:5C:77:02:7F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
chain-memo.com
*.chain-memo.com
cdgadvisor.com
*.cdgadvisor.com
centeredvision.xyz
*.centeredvision.xyz
ceriasemarak.org
*.ceriasemarak.org
championfitnesscore.club
*.championfitnesscore.club
cityprosper.click
*.cityprosper.click
ckarm.cc
*.ckarm.cc
connectpulseify.com
*.connectpulseify.com
containermattinhaber.com
*.containermattinhaber.com
crazyjd88.vip
*.crazyjd88.vip
creamy.vip
*.creamy.vip
hj2407aa7.top
*.hj2407aa7.top
hj2407ya102.top
*.hj2407ya102.top
hj2407ya99.top
*.hj2407ya99.top
hj2407yae8.top
*.hj2407yae8.top
hj25may10b.top
*.hj25may10b.top
hj25may10e.top
*.hj25may10e.top
hjd336.com
*.hjd336.com
hnbqp.gdn
*.hnbqp.gdn
hoegz.gdn
*.hoegz.gdn
holmapaz.com
*.holmapaz.com
hypercoating.com
*.hypercoating.com
idcbk.loan
*.idcbk.loan
ikqjn.my
*.ikqjn.my
immigrantmothers.net
*.immigrantmothers.net
intelligentoutsourcing.services
*.intelligentoutsourcing.services
investor.investments
*.investor.investments
iofiz.gdn
*.iofiz.gdn
jebjs.gdn
*.jebjs.gdn
jidedigitals.com
*.jidedigitals.com
jjeotu.me
*.jjeotu.me
jnh.in
*.jnh.in
joinkolsquare.top
*.joinkolsquare.top
joyland.life
*.joyland.life
ke9.rip
*.ke9.rip
keepmcool.com
*.keepmcool.com
knullpointers.info
*.knullpointers.info
kpoct.bid
*.kpoct.bid
kreditz.org
*.kreditz.org
kushautos.com
*.kushautos.com
lacasadelcortacesped-sl.com
*.lacasadelcortacesped-sl.com
latexfitstore.com
*.latexfitstore.com
lensfieldgreenadvisory.com
*.lensfieldgreenadvisory.com
leon-casino-fi2kp.xyz
*.leon-casino-fi2kp.xyz
Other domains in certificate