Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=seginco.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 29, 2026
Valid Until
April 29, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:E2:16:9A:47:14:48:E4:45:C9:0E:E0:A8:81:39:9F:4B:8A:3A:67:CB:D9:17:77:63:77:E6:39:3C:AC:0C:B3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
cryptoesport.com
*.cryptoesport.com
clicsouq.com
*.clicsouq.com
collect-militaria.com
*.collect-militaria.com
craftsyhack.com
*.craftsyhack.com
cybersecurity-services-course.click
*.cybersecurity-services-course.click
cyclemethod.com
*.cyclemethod.com
dafabetapp.vip
*.dafabetapp.vip
dailytopblognews.com
*.dailytopblognews.com
dearthomas.com
*.dearthomas.com
diesel-chilecl.com
*.diesel-chilecl.com
melrosedelivery.com
*.melrosedelivery.com
*.webmail.melrosedelivery.com
seginco.com
*.seginco.com
serenetravelretreats.com
*.serenetravelretreats.com
service-geeni-ukapp.com
*.service-geeni-ukapp.com
sexyvoicelines.com
*.sexyvoicelines.com
shorty-week.com
*.shorty-week.com
smartcorebyassanpanel.com
*.smartcorebyassanpanel.com
social-gmes.com
*.social-gmes.com
straightfromphillysteakout.net
*.straightfromphillysteakout.net
streea-davis.com
*.streea-davis.com
sugardefende24.com
*.sugardefende24.com
supernovasalesschool.com
*.supernovasalesschool.com
test163.com
*.test163.com
teva777.app
*.teva777.app
thedailynewsbox.com
*.thedailynewsbox.com
theinfluenceroomlead.com
*.theinfluenceroomlead.com
thepersonaldevelopmentschool.com
*.thepersonaldevelopmentschool.com
theproofslabs.com
*.theproofslabs.com
thesecretsofsttropez.com
*.thesecretsofsttropez.com
tiktrac.com
*.tiktrac.com
traderflex200ai.com
*.traderflex200ai.com
tronkings.community
*.tronkings.community
tryzoominfoteam.com
*.tryzoominfoteam.com
urbanfoodtrends.com
*.urbanfoodtrends.com
usahaprediksi-hk.com
*.usahaprediksi-hk.com
usashanalin.com
*.usashanalin.com
usedautopartsfinder.com
*.usedautopartsfinder.com
vitrinehost.com
*.vitrinehost.com
waterfalldiver.org
*.waterfalldiver.org
welebar.com
*.welebar.com
wirelesspixxa.com
*.wirelesspixxa.com
xhsguide.com
*.xhsguide.com
xn--8uqp2bc9rn60c.com
*.xn--8uqp2bc9rn60c.com
youcanschoolprogram.com
*.youcanschoolprogram.com
Other domains in certificate