Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=exceptionalhomehealth.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 15, 2026
Valid Until
August 13, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2A:54:42:94:E6:54:D0:11:D3:29:70:BA:FE:89:88:16:C0:E8:02:C2:FB:02:44:02:8F:46:4D:79:D2:70:11:EF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
compuss.com
*.compuss.com
*.usu.compuss.com
aiq365.com
*.aiq365.com
*.m.aiq365.com
*.b2b.baryon.in
baryon.in
*.baryon.in
*.eam.baryon.in
birthandbeyond.uk
*.birthandbeyond.uk
*.cpcalendars.birthandbeyond.uk
*.store.birthandbeyond.uk
bytebridge.studio
*.bytebridge.studio
*.1klvj2.dategence.com
dategence.com
*.dategence.com
decir.it
*.decir.it
*.hostmaster.decir.it
dino69aseli.com
*.dino69aseli.com
*.rds.dino69aseli.com
*.reporting.dino69aseli.com
drapauline.com.br
*.drapauline.com.br
*.cpanel.esamaria.website
esamaria.website
*.esamaria.website
*.wpt.esamaria.website
*.acceso.exceptionalhomehealth.com
exceptionalhomehealth.com
*.exceptionalhomehealth.com
*.gateway.exceptionalhomehealth.com
*.smtp.exceptionalhomehealth.com
*.ts.exceptionalhomehealth.com
geenoline.site
*.geenoline.site
*.mail.geenoline.site
*.new.geenoline.site
*.ww38.geenoline.site
moviesite.online
*.moviesite.online
*.webmail.moviesite.online
*.ww25.moviesite.online
*.456c6091-5947-4e09-a075-87680408d14a.muzan.xyz
muzan.xyz
*.muzan.xyz
*.www.muzan.xyz
*.cloud.nascentelectric.com
*.hostmaster.nascentelectric.com
nascentelectric.com
*.nascentelectric.com
*.rd.nascentelectric.com
*.m.newgaziyabadsatta.com
newgaziyabadsatta.com
*.newgaziyabadsatta.com
*.ww25.newgaziyabadsatta.com
*.llh.oldfrenchwine.com
oldfrenchwine.com
*.oldfrenchwine.com
*.sitemaps.oldfrenchwine.com
oxbongda.club
*.oxbongda.club
*.v4teiz.oxbongda.club
personalinjuryaccident-attorneyhub.click
*.personalinjuryaccident-attorneyhub.click
*.demo.poshpelican.com
*.m.poshpelican.com
poshpelican.com
*.poshpelican.com
*.lime.reclinerhome.com
reclinerhome.com
*.reclinerhome.com
*.random.russische-hochzeit-deutschland.info
russische-hochzeit-deutschland.info
*.russische-hochzeit-deutschland.info
*.ww38.russische-hochzeit-deutschland.info
*.mx.slaveryfacts.org
slaveryfacts.org
*.slaveryfacts.org
*.31b7d5b2-0ed4-46a4-a225-3b106fd6f65b.supportwebsite.biz
*.api.supportwebsite.biz
*.backup.supportwebsite.biz
*.dev.supportwebsite.biz
*.portal.supportwebsite.biz
supportwebsite.biz
*.supportwebsite.biz
Other domains in certificate