76/100 SECURITY SCORE

Certificate Information

Subject
CN=caiswimwear.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 19, 2026
Valid Until
August 17, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
65:CC:0C:64:38:5E:AC:80:24:71:87:64:3C:13:25:CF:DD:A1:9B:64:B4:B2:72:81:25:8B:54:70:08:C8:4B:BF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
playbyaol.com *.playbyaol.com *.api.playbyaol.com *.dev.playbyaol.com *.mailer.playbyaol.com *.qa.playbyaol.com *.test.playbyaol.com *.ww16.playbyaol.com *.ww25.playbyaol.com

Other domains in certificate

battlaxt30.eu *.battlaxt30.eu
bengoshinow.com *.bengoshinow.com *.ww25.bengoshinow.com *.ww31.bengoshinow.com *.ww38.bengoshinow.com
caiswimwear.com *.caiswimwear.com *.www.caiswimwear.com
cheia.eu *.cheia.eu
cms-606tv.eu *.cms-606tv.eu
cubar.eu *.cubar.eu
dentalimplantspoland.eu *.dentalimplantspoland.eu
devilstore.eu *.devilstore.eu
dezwervers.eu *.dezwervers.eu
ecocc.eu *.ecocc.eu
eujcs.eu *.eujcs.eu
frivolite.eu *.frivolite.eu
ghaar.eu *.ghaar.eu
glizzeria.eu *.glizzeria.eu
*.cdn.hayaacollections.art *.cpanel.hayaacollections.art *.cpcalendars.hayaacollections.art hayaacollections.art *.hayaacollections.art *.mail02.hayaacollections.art *.mailin.hayaacollections.art *.test.hayaacollections.art *.webmail.hayaacollections.art *.www.hayaacollections.art *.zimbra.hayaacollections.art
healthybenfitsplus.com *.healthybenfitsplus.com *.random.healthybenfitsplus.com *.ww25.healthybenfitsplus.com *.www.healthybenfitsplus.com
hensu.de *.hensu.de
hispanoamerica.eu *.hispanoamerica.eu
hrman.eu *.hrman.eu
humanchild.de *.humanchild.de
huynh.eu *.huynh.eu
odpo.eu *.odpo.eu
piara.eu *.piara.eu
pinska.eu *.pinska.eu
printish.de *.printish.de
*.bioxtrimgummies.productyes.com *.erexol.productyes.com productyes.com *.productyes.com
tresc.eu *.tresc.eu
van-u.eu *.van-u.eu
wdroge.eu *.wdroge.eu
*.admin.xavis.com *.ww25.xavis.com xavis.com *.xavis.com