76/100 SECURITY SCORE

Certificate Information

Subject
CN=caie.org.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 08, 2026
Valid Until
April 08, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C8:E8:52:5A:65:50:2E:17:DB:B5:87:6D:D1:35:9E:CC:98:B6:FE:93:86:85:07:88:A4:C3:13:64:54:C4:4E:8D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
phdtrainingopen.space *.phdtrainingopen.space *.ai.phdtrainingopen.space *.analytics.phdtrainingopen.space *.api.phdtrainingopen.space *.app.phdtrainingopen.space *.backend.phdtrainingopen.space *.dashboard.phdtrainingopen.space *.demo.phdtrainingopen.space *.dev.phdtrainingopen.space *.development.phdtrainingopen.space *.flowise.phdtrainingopen.space *.flowiseai.phdtrainingopen.space *.insight-uat.phdtrainingopen.space *.integration.phdtrainingopen.space *.preprod.phdtrainingopen.space *.production-visualize.phdtrainingopen.space *.production.phdtrainingopen.space *.qa.phdtrainingopen.space *.report.phdtrainingopen.space *.reporting.phdtrainingopen.space *.sandbox.phdtrainingopen.space *.superset.phdtrainingopen.space *.test-bot.phdtrainingopen.space *.visualize.phdtrainingopen.space

Other domains in certificate

australiawebsites.com.au *.australiawebsites.com.au
*.admin.bbc1.site bbc1.site *.bbc1.site *.f1dcn2umzo921jem.bbc1.site *.hostmaster.bbc1.site *.s8b2dw68tx3fxn8t.bbc1.site *.ww1.bbc1.site *.www.bbc1.site
bluesonlinestore.co.uk *.bluesonlinestore.co.uk *.mail.bluesonlinestore.co.uk *.ww16.bluesonlinestore.co.uk
caie.org.uk *.caie.org.uk *.random.caie.org.uk *.ww16.caie.org.uk
*.asia.construct-equip.co.uk *.asp.construct-equip.co.uk *.br.construct-equip.co.uk *.campaign.construct-equip.co.uk construct-equip.co.uk *.construct-equip.co.uk *.facebook.construct-equip.co.uk *.invites.construct-equip.co.uk *.m.construct-equip.co.uk *.maven.construct-equip.co.uk *.oh.construct-equip.co.uk *.pls-gts.construct-equip.co.uk *.plsstg.construct-equip.co.uk *.potaufeu.construct-equip.co.uk *.psb-stg.construct-equip.co.uk *.ww25.construct-equip.co.uk
dispomail.click *.dispomail.click
*.25on4s7v.f18.com *.6.f18.com *.68.f18.com *.78.f18.com *.a.f18.com *.aic-a.f18.com *.aic.f18.com *.e3.f18.com f18.com *.f18.com *.lthaic.f18.com *.mes3.f18.com *.s3moni-fz5.f18.com *.vnapif.f18.com *.wgr.f18.com
mainsearches.com *.mainsearches.com
*.cdn.mayork.com *.mail.mayork.com *.mail2.mayork.com mayork.com *.mayork.com *.sitemaps.mayork.com *.smtpauth.mayork.com
netbookerng.co *.netbookerng.co *.ww38.netbookerng.co
wwwworkforcenowadp.com *.wwwworkforcenowadp.com