76/100 SECURITY SCORE

Certificate Information

Subject
CN=seiko5.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 02, 2026
Valid Until
May 03, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F5:76:AB:4A:E9:B2:96:63:8F:8C:F7:04:16:CB:4B:A7:BE:5A:29:8A:26:6F:33:0A:9D:18:A2:99:4A:33:4C:C8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
cagna.com *.cagna.com *.admin.cagna.com *.analytics.cagna.com *.portal.cagna.com

Other domains in certificate

217.live *.217.live *.app.217.live *.laravel.217.live
alarie.com *.alarie.com *.cs.alarie.com *.mx7.alarie.com *.pool.alarie.com *.smtpauth.alarie.com *.v28.alarie.com *.virtual2.alarie.com
bigboomporn.com *.bigboomporn.com *.cdn.bigboomporn.com *.cdn1.bigboomporn.com *.mx.bigboomporn.com
*.beta.blumenhaus-doveflorist.com *.blog.blumenhaus-doveflorist.com blumenhaus-doveflorist.com *.blumenhaus-doveflorist.com *.catalog.blumenhaus-doveflorist.com *.demo.blumenhaus-doveflorist.com *.inventory.blumenhaus-doveflorist.com *.m.blumenhaus-doveflorist.com *.magento.blumenhaus-doveflorist.com *.server.blumenhaus-doveflorist.com *.shop.blumenhaus-doveflorist.com *.staging.blumenhaus-doveflorist.com *.staging4.blumenhaus-doveflorist.com *.store.blumenhaus-doveflorist.com *.test.blumenhaus-doveflorist.com *.www.blumenhaus-doveflorist.com
datahk6d.org *.datahk6d.org *.www.datahk6d.org
*.desktop.gallard.com gallard.com *.gallard.com
*.7643f52c-2a48-4431-9483-71be9727204e.gotmore.com *.desktop.gotmore.com gotmore.com *.gotmore.com *.kpzxyfmuvm.gotmore.com *.mobile.gotmore.com
hackathon.services *.hackathon.services
*.apps.incerte.com incerte.com *.incerte.com *.mail.incerte.com *.rds.incerte.com *.rustore.incerte.com *.ww25.incerte.com
maxbet338promo.com *.maxbet338promo.com *.ww1.maxbet338promo.com
seiko5.com *.seiko5.com *.wildcard.seiko5.com
*.my.wannacyber.com *.terminal.wannacyber.com wannacyber.com *.wannacyber.com
*.ts.whitbecks.com whitbecks.com *.whitbecks.com *.ww1.whitbecks.com
*.a-realstate.wpcarebd.com *.a-recipe.wpcarebd.com *.adon-ecommerce.wpcarebd.com *.adon.wpcarebd.com *.adonhotel.wpcarebd.com *.fazlul-ecommerce.wpcarebd.com *.hotel-argos.wpcarebd.com *.jakir-ecommerce.wpcarebd.com *.mahmud.wpcarebd.com *.rubel-ecommerce.wpcarebd.com *.rubel-realestate.wpcarebd.com *.rubel.wpcarebd.com wpcarebd.com *.wpcarebd.com
*.sitemap.yamanemlak.com yamanemlak.com *.yamanemlak.com