Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=caie.org.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 08, 2026
Valid Until
April 08, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C8:E8:52:5A:65:50:2E:17:DB:B5:87:6D:D1:35:9E:CC:98:B6:FE:93:86:85:07:88:A4:C3:13:64:54:C4:4E:8D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
phdtrainingopen.space
*.phdtrainingopen.space
*.ai.phdtrainingopen.space
*.analytics.phdtrainingopen.space
*.api.phdtrainingopen.space
*.app.phdtrainingopen.space
*.backend.phdtrainingopen.space
*.dashboard.phdtrainingopen.space
*.demo.phdtrainingopen.space
*.dev.phdtrainingopen.space
*.development.phdtrainingopen.space
*.flowise.phdtrainingopen.space
*.flowiseai.phdtrainingopen.space
*.insight-uat.phdtrainingopen.space
*.integration.phdtrainingopen.space
*.preprod.phdtrainingopen.space
*.production-visualize.phdtrainingopen.space
*.production.phdtrainingopen.space
*.qa.phdtrainingopen.space
*.report.phdtrainingopen.space
*.reporting.phdtrainingopen.space
*.sandbox.phdtrainingopen.space
*.superset.phdtrainingopen.space
*.test-bot.phdtrainingopen.space
*.visualize.phdtrainingopen.space
australiawebsites.com.au
*.australiawebsites.com.au
*.admin.bbc1.site
bbc1.site
*.bbc1.site
*.f1dcn2umzo921jem.bbc1.site
*.hostmaster.bbc1.site
*.s8b2dw68tx3fxn8t.bbc1.site
*.ww1.bbc1.site
*.www.bbc1.site
bluesonlinestore.co.uk
*.bluesonlinestore.co.uk
*.mail.bluesonlinestore.co.uk
*.ww16.bluesonlinestore.co.uk
caie.org.uk
*.caie.org.uk
*.random.caie.org.uk
*.ww16.caie.org.uk
*.asia.construct-equip.co.uk
*.asp.construct-equip.co.uk
*.br.construct-equip.co.uk
*.campaign.construct-equip.co.uk
construct-equip.co.uk
*.construct-equip.co.uk
*.facebook.construct-equip.co.uk
*.invites.construct-equip.co.uk
*.m.construct-equip.co.uk
*.maven.construct-equip.co.uk
*.oh.construct-equip.co.uk
*.pls-gts.construct-equip.co.uk
*.plsstg.construct-equip.co.uk
*.potaufeu.construct-equip.co.uk
*.psb-stg.construct-equip.co.uk
*.ww25.construct-equip.co.uk
dispomail.click
*.dispomail.click
*.25on4s7v.f18.com
*.6.f18.com
*.68.f18.com
*.78.f18.com
*.a.f18.com
*.aic-a.f18.com
*.aic.f18.com
*.e3.f18.com
f18.com
*.f18.com
*.lthaic.f18.com
*.mes3.f18.com
*.s3moni-fz5.f18.com
*.vnapif.f18.com
*.wgr.f18.com
mainsearches.com
*.mainsearches.com
*.cdn.mayork.com
*.mail.mayork.com
*.mail2.mayork.com
mayork.com
*.mayork.com
*.sitemaps.mayork.com
*.smtpauth.mayork.com
netbookerng.co
*.netbookerng.co
*.ww38.netbookerng.co
wwwworkforcenowadp.com
*.wwwworkforcenowadp.com
Other domains in certificate