76/100 SECURITY SCORE

Certificate Information

Subject
CN=hgcgnfe.icu
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 19, 2026
Valid Until
August 17, 2026 55 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AA:FC:ED:D9:A1:AE:94:E9:73:CB:3C:E1:68:14:D2:ED:2F:56:BD:ED:96:51:EA:A4:D3:BA:C9:08:D4:21:09:F6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
organixsolutions.com *.organixsolutions.com *.autodiscover.organixsolutions.com *.barracuda.organixsolutions.com *.ww16.organixsolutions.com *.ww38.organixsolutions.com

Other domains in certificate

chambermusicarts.com *.chambermusicarts.com
checksecurityaccess.com *.checksecurityaccess.com
cluttercase.com *.cluttercase.com
collorhunt.co *.collorhunt.co
*.6e86af16-02aa-4462-81c9-d89274feead0.digibtx.com *.api.digibtx.com *.app.digibtx.com *.b61599b8-f11e-4660-9a60-7e805c060959.digibtx.com *.dev.digibtx.com digibtx.com *.digibtx.com *.members.digibtx.com *.remote.digibtx.com *.staging.digibtx.com *.test.digibtx.com *.vpn.digibtx.com *.w7tfd6.digibtx.com *.www.digibtx.com
*.1e29a3cf-7e8e-49f6-972d-ae7c9d089f27.gletscherski.com *.24d7a386-ad71-4282-9d6c-e28fa743e612.gletscherski.com *.822202f6-0778-456a-b485-c28e47767a1f.gletscherski.com *.app.gletscherski.com *.ckhntsdi.gletscherski.com *.cloud.gletscherski.com *.cwtfgbra.gletscherski.com *.dev.gletscherski.com gletscherski.com *.gletscherski.com *.jwumsefn.gletscherski.com *.kprlhwzs.gletscherski.com *.m.gletscherski.com *.nktamxgz.gletscherski.com *.qxectkln.gletscherski.com *.rds.gletscherski.com *.rdweb.gletscherski.com *.remote.gletscherski.com *.sodeflny.gletscherski.com *.test.gletscherski.com *.teste.gletscherski.com *.vpn.gletscherski.com *.www.gletscherski.com *.yxbdfs.gletscherski.com *.zodblkgs.gletscherski.com *.zpxujtwf.gletscherski.com
hgcgnfe.icu *.hgcgnfe.icu
hungrybucks.co *.hungrybucks.co
hybridmedia.co *.hybridmedia.co
iearth.co *.iearth.co
igopizzas.co *.igopizzas.co
improvementimprov.co *.improvementimprov.co
mcubu.loan *.mcubu.loan
mesaazwater.co *.mesaazwater.co
mommycentermusic.co *.mommycentermusic.co
neurashealth.co *.neurashealth.co
nutrasolis.co *.nutrasolis.co
nyd77uhs.cc *.nyd77uhs.cc
ofmeta.com *.ofmeta.com
oilpric.co *.oilpric.co
okhds.cn *.okhds.cn
onemp.co *.onemp.co
*.concours-sb.privileges.ca *.hostmaster.privileges.ca privileges.ca *.privileges.ca