76/100 SECURITY SCORE

Certificate Information

Subject
CN=harborstack.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 14, 2026
Valid Until
August 12, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:40:B9:09:A4:33:65:68:ED:DF:50:58:86:70:4E:93:40:E8:E3:73:83:D8:E7:D8:CD:A9:FF:91:44:AC:E4:2A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
pijarkejora.com *.pijarkejora.com *.cpcontacts.pijarkejora.com *.demo.pijarkejora.com *.ftp.pijarkejora.com *.mailer.pijarkejora.com *.wwww.pijarkejora.com

Other domains in certificate

*.44.ash69.live ash69.live *.ash69.live
clinicalgreece.com *.clinicalgreece.com *.dentech.clinicalgreece.com *.fotsrouter.clinicalgreece.com *.ishtar.clinicalgreece.com *.kinomaxis1.clinicalgreece.com *.pnbl.clinicalgreece.com *.poste.clinicalgreece.com
*.55dacb6b-dc3c-4598-b2fe-371c299b9c46.cricketx.bet *.74651de5-f78d-4c92-b174-474be1b2578b.cricketx.bet cricketx.bet *.cricketx.bet *.ww25.cricketx.bet
echotrail.biz *.echotrail.biz *.so5jd9.echotrail.biz
eggenburg.de *.eggenburg.de *.random.eggenburg.de
grademiner-s.com *.grademiner-s.com *.www.grademiner-s.com
harborstack.co *.harborstack.co *.www.harborstack.co
*.b6a282d9-2984-4879-b697-e6bd1c143ed3.hello88.gdn hello88.gdn *.hello88.gdn *.hostmaster.hello88.gdn *.www.hello88.gdn
linkvao8live.org *.linkvao8live.org
meetiacquisitionpartners.com *.meetiacquisitionpartners.com
*.fq.mtonetwork.com mtonetwork.com *.mtonetwork.com *.ring.mtonetwork.com
*.api.nerdle.onl *.m.nerdle.onl nerdle.onl *.nerdle.onl
*.lc.nicktsaicoach.com nicktsaicoach.com *.nicktsaicoach.com
*.pop.rik30.net rik30.net *.rik30.net *.www.rik30.net
*.insights.tamilyogi.mobi *.m.tamilyogi.mobi *.mall.tamilyogi.mobi *.shop.tamilyogi.mobi tamilyogi.mobi *.tamilyogi.mobi *.ww25.tamilyogi.mobi
*.checkout.techxperts.tech techxperts.tech *.techxperts.tech *.ww25.techxperts.tech
*.3c.telcit.site *.de.telcit.site *.gc.telcit.site *.go.telcit.site *.hc.telcit.site *.jp.telcit.site *.kefu.telcit.site *.oo.telcit.site *.pe.telcit.site *.portal.telcit.site *.qo.telcit.site *.support.telcit.site telcit.site *.telcit.site *.use.telcit.site
y3-88581729.xyz *.y3-88581729.xyz
y3yadfvfzysx.cc *.y3yadfvfzysx.cc