76/100 SECURITY SCORE

Certificate Information

Subject
CN=nielacm.pro
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 10, 2026
Valid Until
May 11, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5D:D6:F3:80:4D:BF:74:FD:D2:68:6F:F9:E9:9C:75:E8:1D:ED:A4:C8:2E:5A:C2:94:AE:1F:00:7E:5A:00:D8:BE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
staiger.com *.staiger.com *.admin.staiger.com *.anyconnect.staiger.com *.api.staiger.com *.app.staiger.com *.autodiscover.staiger.com *.ciscoasa.staiger.com *.cloudvpn.staiger.com *.connect.staiger.com *.crm.staiger.com *.customers.staiger.com *.dashboard.staiger.com *.dev.staiger.com *.email.staiger.com *.ftp.staiger.com *.gp.staiger.com *.help.staiger.com *.imap.staiger.com *.leads.staiger.com *.mail.staiger.com *.ns.staiger.com *.portal.staiger.com *.ra.staiger.com *.random.staiger.com *.ravpn.staiger.com *.relay.staiger.com *.remote.staiger.com *.sales.staiger.com *.secure.staiger.com *.sitemap.staiger.com *.sitemaps.staiger.com *.smtp.staiger.com *.ssl.staiger.com *.sslvpn.staiger.com *.support.staiger.com *.test.staiger.com *.vpn.staiger.com *.webmail.staiger.com *.ww1.staiger.com *.ww16.staiger.com *.www.staiger.com

Other domains in certificate

*.app.eraseautodebt.com eraseautodebt.com *.eraseautodebt.com *.mailer.eraseautodebt.com *.rds.eraseautodebt.com *.secure.eraseautodebt.com *.stg.eraseautodebt.com *.v2.eraseautodebt.com *.yumnqblf.eraseautodebt.com
*.cpanel.milliondollarrustic.com *.dzjt.milliondollarrustic.com *.mail.milliondollarrustic.com milliondollarrustic.com *.milliondollarrustic.com *.random.milliondollarrustic.com *.rusticheritagefurniture.milliondollarrustic.com *.sso.milliondollarrustic.com *.webdisk.milliondollarrustic.com *.webmail.milliondollarrustic.com *.ww25.milliondollarrustic.com *.www.milliondollarrustic.com
*.adguard1.nielacm.pro *.agh.nielacm.pro *.marketing.nielacm.pro nielacm.pro *.nielacm.pro *.portal.nielacm.pro *.shop.nielacm.pro *.v2.nielacm.pro
*.email.wgsoffice.com *.ftp.wgsoffice.com *.home.wgsoffice.com *.mail.wgsoffice.com *.mx.wgsoffice.com *.opac.wgsoffice.com *.owa.wgsoffice.com *.pub.wgsoffice.com *.scrm.wgsoffice.com *.sh.wgsoffice.com *.steinhardt.wgsoffice.com *.syjx.wgsoffice.com wgsoffice.com *.wgsoffice.com *.wildcard.wgsoffice.com *.ww25.wgsoffice.com *.ww38.wgsoffice.com *.zj.wgsoffice.com