Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=carverdiscountcleaners.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 27, 2026
Valid Until
April 27, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BA:8F:F0:E5:64:77:0A:77:0E:9C:5C:07:A3:12:77:B4:42:E7:F8:97:23:11:45:C8:9D:58:D2:5F:01:58:6E:ED
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
chagen.com
*.chagen.com
*.archive.chagen.com
*.books.chagen.com
*.ca.chagen.com
*.cdn.chagen.com
*.comune.chagen.com
*.geo.chagen.com
*.ildcard.chagen.com
*.konkurs.chagen.com
*.law.chagen.com
*.mail.chagen.com
*.mx.chagen.com
*.panel.chagen.com
*.photos.chagen.com
*.post.chagen.com
*.saratov.chagen.com
*.sipexternal.chagen.com
*.video.chagen.com
*.wap.chagen.com
*.ww25.chagen.com
carverdiscountcleaners.com
*.carverdiscountcleaners.com
*.www.carverdiscountcleaners.com
*.buy.chicity.com
*.chat.chicity.com
chicity.com
*.chicity.com
*.dev.chicity.com
*.exbuy.chicity.com
*.ezbuy.chicity.com
*.jobs.chicity.com
*.random.chicity.com
*.ww16.chicity.com
*.ww38.chicity.com
*.blog.drugcounseling.com
drugcounseling.com
*.drugcounseling.com
*.backup.endclothing.co
*.emails.endclothing.co
endclothing.co
*.endclothing.co
*.launches.endclothing.co
*.cpcalendars.enfermedadesraras.org
enfermedadesraras.org
*.enfermedadesraras.org
grabolinks.xyz
*.grabolinks.xyz
*.ww25.grabolinks.xyz
*.ww38.grabolinks.xyz
hlg2193a.cc
*.hlg2193a.cc
*.access.janssenspeakerprograms.com
*.aix.janssenspeakerprograms.com
*.auth-ns.janssenspeakerprograms.com
*.az.janssenspeakerprograms.com
*.consult.janssenspeakerprograms.com
*.cz.janssenspeakerprograms.com
*.devel.janssenspeakerprograms.com
*.external.janssenspeakerprograms.com
*.fo.janssenspeakerprograms.com
*.iis.janssenspeakerprograms.com
*.internet.janssenspeakerprograms.com
janssenspeakerprograms.com
*.janssenspeakerprograms.com
*.loadbalancer.janssenspeakerprograms.com
*.nas.janssenspeakerprograms.com
*.ns1.janssenspeakerprograms.com
*.ns2.janssenspeakerprograms.com
*.ns3.janssenspeakerprograms.com
*.out.janssenspeakerprograms.com
*.pss.janssenspeakerprograms.com
*.sirius.janssenspeakerprograms.com
*.storefront.janssenspeakerprograms.com
*.unitedstates.janssenspeakerprograms.com
*.webcam.janssenspeakerprograms.com
*.ws.janssenspeakerprograms.com
*.ww25.janssenspeakerprograms.com
viajesbaratos.life
*.viajesbaratos.life
*.m15.yxjhfgy.com
*.m19.yxjhfgy.com
*.m23.yxjhfgy.com
*.m32.yxjhfgy.com
*.m34.yxjhfgy.com
*.m35.yxjhfgy.com
*.m38.yxjhfgy.com
*.m7.yxjhfgy.com
yxjhfgy.com
*.yxjhfgy.com
Other domains in certificate