76/100 SECURITY SCORE

Certificate Information

Subject
CN=goplumb.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026 74 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E5:F2:B1:5B:8B:2F:9D:17:D5:46:AE:E8:2B:B7:AA:77:C8:CA:89:C6:4B:AC:8B:D1:D7:E8:D0:7E:05:5C:4C:EA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
amgmethod.com *.amgmethod.com *.assets.amgmethod.com *.hostmaster.amgmethod.com

Other domains in certificate

chankung.cn *.chankung.cn *.www.chankung.cn
estive.com *.estive.com *.terminal.estive.com
*.backup.fun-88-ko.com fun-88-ko.com *.fun-88-ko.com *.mail.fun-88-ko.com *.qa.fun-88-ko.com *.sharepoint.fun-88-ko.com
*.644a2c0c-bc7b-4af0-a39a-53c1996ceb1b.garbagemaga.org garbagemaga.org *.garbagemaga.org *.hostmaster.garbagemaga.org
*.1.gatefk.com *.admin.gatefk.com *.analytics.gatefk.com *.api.gatefk.com *.app.gatefk.com *.backend.gatefk.com *.backup.gatefk.com *.beta.gatefk.com *.blog.gatefk.com *.chart.gatefk.com *.cr0dp4cg0644dpufotv0.gatefk.com *.crm.gatefk.com *.dashboard.gatefk.com *.dashboards.gatefk.com *.dashs.gatefk.com *.demo.gatefk.com *.dg.gatefk.com *.forum.gatefk.com *.forums.gatefk.com gatefk.com *.gatefk.com *.help.gatefk.com *.home.gatefk.com *.intelligence.gatefk.com *.m.gatefk.com *.metric.gatefk.com *.metrics.gatefk.com *.mobile.gatefk.com *.new.gatefk.com *.news.gatefk.com *.notexistsww16.gatefk.com *.notexistsww25.gatefk.com *.random.gatefk.com *.remote.gatefk.com *.reporting.gatefk.com *.shop.gatefk.com *.staging.gatefk.com *.stats.gatefk.com *.store.gatefk.com *.superset.gatefk.com *.temp.gatefk.com *.test.gatefk.com *.visual.gatefk.com *.vpn.gatefk.com *.wap.gatefk.com *.wiki.gatefk.com *.wildcard.gatefk.com *.workflow.gatefk.com *.ww.gatefk.com *.ww1.gatefk.com *.ww16.gatefk.com *.ww2.gatefk.com *.ww38.gatefk.com *.ww41.gatefk.com *.www.gatefk.com
*.app.goplumb.com goplumb.com *.goplumb.com *.stats.goplumb.com
ph365login.com *.ph365login.com *.remote.ph365login.com
*.ex2019.shorten.ws *.owa.shorten.ws *.remote.shorten.ws shorten.ws *.shorten.ws
*.email.smpmuhajirincikupa.org smpmuhajirincikupa.org *.smpmuhajirincikupa.org