Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=ingrammicrocredit.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 24, 2025
Valid Until
March 24, 2026
43 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
42:F5:37:B3:51:7E:E4:EA:63:35:C4:86:1C:E3:81:D6:15:B5:98:7A:59:BC:AA:48:0D:7F:D5:5D:7D:DF:9A:2B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
collectcard.com
*.collectcard.com
*.ww38.collectcard.com
1js.xyz
*.1js.xyz
*.m.1js.xyz
arrowheadlandingresidents.com
*.arrowheadlandingresidents.com
climbaroo.com
*.climbaroo.com
comdogames.xyz
*.comdogames.xyz
*.d8239a0d-b906-4dbb-a373-129f2c9cbba2.comdogames.xyz
dandjwindowwashing.com
*.dandjwindowwashing.com
*.tools.dandjwindowwashing.com
drplayinfo.live
*.drplayinfo.live
entrebrasas.com
*.entrebrasas.com
*.aprillindsey.ettord.xyz
ettord.xyz
*.ettord.xyz
grupporfmotors.com
*.grupporfmotors.com
helltide.co
*.helltide.co
*.apps.homepot.com
*.careers.homepot.com
homepot.com
*.homepot.com
*.random.homepot.com
*.st2917.homepot.com
*.st6588.homepot.com
*.st6846.homepot.com
ingrammicrocredit.com
*.ingrammicrocredit.com
*.www.ingrammicrocredit.com
*.beta.jackstable.com
*.blog.jackstable.com
*.demo.jackstable.com
*.hostmaster.jackstable.com
jackstable.com
*.jackstable.com
*.random.jackstable.com
*.ww11.jackstable.com
*.ww16.jackstable.com
*.ww17.jackstable.com
*.ww25.jackstable.com
*.ww38.jackstable.com
kursiaman.click
*.kursiaman.click
*.m.nclyyh.com
nclyyh.com
*.nclyyh.com
*.remote.nclyyh.com
*.vpn.nclyyh.com
*.wap.nclyyh.com
*.wildcard.nclyyh.com
pscrackjsn.com
*.pscrackjsn.com
*.com.realnewsberita.com
realnewsberita.com
*.realnewsberita.com
s5ranchaussies.com
*.s5ranchaussies.com
*.random.solaraze.online
solaraze.online
*.solaraze.online
*.random.terraafrica.info
terraafrica.info
*.terraafrica.info
*.random.tooncubus.xyz
tooncubus.xyz
*.tooncubus.xyz
*.ww25.tooncubus.xyz
urao.com
*.urao.com
vernacarpet.com
*.vernacarpet.com
visavisitsaudi.com
*.visavisitsaudi.com
wwwbarcelo.com
*.wwwbarcelo.com
*.random.xtremedetailingservices.com
xtremedetailingservices.com
*.xtremedetailingservices.com
yycg67.com
*.yycg67.com
Other domains in certificate