Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=healthequitu.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 12, 2026
Valid Until
April 12, 2026 48 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
36:1B:77:69:82:6D:41:AA:DB:25:CA:5D:E5:30:BD:6F:F4:8A:BE:28:C2:25:16:C2:FC:9F:0A:EE:A7:43:63:F3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
chanelpg.com *.chanelpg.com *.ww38.chanelpg.com

Other domains in certificate

*.acc.careplushealhplans.com careplushealhplans.com *.careplushealhplans.com *.files.careplushealhplans.com *.jenkins.careplushealhplans.com *.login.careplushealhplans.com *.random.careplushealhplans.com *.ww25.careplushealhplans.com
chaletsdenosamours.com *.chaletsdenosamours.com *.community.chaletsdenosamours.com *.gmail.chaletsdenosamours.com *.random.chaletsdenosamours.com
*.birth.edigitalfastservice.xyz *.com.edigitalfastservice.xyz edigitalfastservice.xyz *.edigitalfastservice.xyz *.live.edigitalfastservice.xyz *.onlline.edigitalfastservice.xyz *.pop.edigitalfastservice.xyz *.site.edigitalfastservice.xyz *.webmail.edigitalfastservice.xyz *.xyz.edigitalfastservice.xyz
*.api.guiando.me *.autodiscover.guiando.me *.cpanel.guiando.me *.cpcontacts.guiando.me *.ed8793aa-15c7-460a-bfa0-ffd44716e607.guiando.me *.ftp.guiando.me guiando.me *.guiando.me *.mta-sts.guiando.me *.shop.guiando.me
*.bluebon.healthequitu.com healthequitu.com *.healthequitu.com
*.gateway.inoxidablesavellaneda.com inoxidablesavellaneda.com *.inoxidablesavellaneda.com *.prueba.inoxidablesavellaneda.com *.ra.inoxidablesavellaneda.com
*.academy.jahveeo.com *.cpanel.jahveeo.com *.cpcalendars.jahveeo.com jahveeo.com *.jahveeo.com *.learn.jahveeo.com *.webdisk.jahveeo.com *.www.jahveeo.com
*.blog.kript.io kript.io *.kript.io *.www.kript.io
leakbunker.com *.leakbunker.com *.www.leakbunker.com
mnaughty.com *.mnaughty.com *.ww25.mnaughty.com
pottrtybarn.com *.pottrtybarn.com *.wildcard.pottrtybarn.com
*.d.ri100.xyz ri100.xyz *.ri100.xyz *.sitemaps.ri100.xyz *.ww25.ri100.xyz *.ww38.ri100.xyz *.www.ri100.xyz
*.2l.sangcha.site *.9i.sangcha.site sangcha.site *.sangcha.site *.ts.sangcha.site *.yo.sangcha.site
*.ebmail.volsebnyi-uchastok.online *.mail.volsebnyi-uchastok.online volsebnyi-uchastok.online *.volsebnyi-uchastok.online *.webmail.volsebnyi-uchastok.online
*.healthcheck.winlife.website *.news.winlife.website winlife.website *.winlife.website *.ww25.winlife.website *.ww38.winlife.website