76/100 SECURITY SCORE

Certificate Information

Subject
CN=anpec.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 20, 2026
Valid Until
May 21, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F2:EE:B3:E9:A8:7D:B8:9A:17:A5:8B:48:FD:BC:AD:BC:E6:C7:7C:89:27:B5:95:98:51:83:03:30:56:EE:96:2A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
cingles.com *.cingles.com *.access.cingles.com *.admin.cingles.com *.anyconnect.cingles.com *.api.cingles.com *.app.cingles.com *.apps.cingles.com *.bbs.cingles.com *.cisco.cingles.com *.clientesvpn.cingles.com *.cloud.cingles.com *.connect.cingles.com *.connecting.cingles.com *.cpcalendars.cingles.com *.cpcontacts.cingles.com *.desktop.cingles.com *.desktopstudent.cingles.com *.dev.cingles.com *.email.cingles.com *.emv1.cingles.com *.exchange.cingles.com *.forums.cingles.com *.ftp.cingles.com *.gate.cingles.com *.gateway.cingles.com *.intra.cingles.com *.mail.cingles.com *.mobileconnect.cingles.com *.officevpn.cingles.com *.portal.cingles.com *.random.cingles.com *.ravpn.cingles.com *.rd.cingles.com *.rds.cingles.com *.rds1.cingles.com *.rdweb.cingles.com *.remoteaccess.cingles.com *.remoto.cingles.com *.schoology.cingles.com *.shoology.cingles.com *.sitemap.cingles.com *.sitemaps.cingles.com *.ssl.cingles.com *.sslvpn.cingles.com *.test.cingles.com *.ts.cingles.com *.vpn.cingles.com *.vpn2.cingles.com *.webmail.cingles.com *.webvpn.cingles.com *.workspace.cingles.com *.ww16.cingles.com *.ww17.cingles.com *.ww25.cingles.com *.ww38.cingles.com

Other domains in certificate

*.admin.anpec.org anpec.org *.anpec.org *.citrix.anpec.org *.en.anpec.org *.exame.anpec.org *.m.anpec.org *.ma.anpec.org *.remote.anpec.org *.vpn.anpec.org *.wildcard.anpec.org *.ww1.anpec.org *.ww17.anpec.org *.ww2.anpec.org *.ww38.anpec.org *.ww6.anpec.org *.www1.anpec.org
*.admin.merrypopping.com *.api.merrypopping.com *.app.merrypopping.com *.assets.merrypopping.com *.demo.merrypopping.com *.dev.merrypopping.com *.helpdesk.merrypopping.com *.m.merrypopping.com merrypopping.com *.merrypopping.com *.new.merrypopping.com *.portal.merrypopping.com *.remote.merrypopping.com *.site1.merrypopping.com *.test.merrypopping.com *.topics.merrypopping.com *.vpn.merrypopping.com