76/100 SECURITY SCORE

Certificate Information

Subject
CN=saloha.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 30, 2026
Valid Until
July 29, 2026 71 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:59:04:0D:62:0C:03:6D:45:5B:5F:33:77:8D:FB:94:5B:93:85:E0:5B:A5:7A:23:BA:10:05:2B:54:13:84:9C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
vacationvanguard.live *.vacationvanguard.live *.dev.vacationvanguard.live

Other domains in certificate

1054yyq301.top *.1054yyq301.top *.1232a043e120a40b192ee6ef74b8fe4e.1054yyq301.top *.4e2b030aca5ce7e3b4b0fdadac6d23fd.1054yyq301.top
*.1j7pf2.45238.blog 45238.blog *.45238.blog *.account.45238.blog *.admin.45238.blog *.api.45238.blog *.app.45238.blog *.b6545498-b9f7-41b0-9fa2-11d28de49d29.45238.blog *.external.45238.blog *.hr.45238.blog *.members.45238.blog *.share.45238.blog *.sharepoint.45238.blog *.test.45238.blog
*.1846m.appay6.xyz *.4kxnn.appay6.xyz *.5jsd7.appay6.xyz appay6.xyz *.appay6.xyz
beland.biz *.beland.biz *.my.beland.biz
bocastik.com *.bocastik.com *.vpn.bocastik.com
bodyfxgym.com *.bodyfxgym.com *.random.bodyfxgym.com *.ww25.bodyfxgym.com *.ww38.bodyfxgym.com *.zyxel.bodyfxgym.com
fenpur.com *.fenpur.com *.m.fenpur.com
ibarakihouse.info *.ibarakihouse.info *.mta-sts.ibarakihouse.info
kaulebihsanggup.click *.kaulebihsanggup.click
*.mx.mybrush.it mybrush.it *.mybrush.it *.www.mybrush.it
*.16.saloha.com *.authsmtp.saloha.com *.blog.saloha.com *.busine.saloha.com *.comune.saloha.com *.gate.saloha.com *.hostmaster.saloha.com *.imap.saloha.com *.imap2.saloha.com *.m.saloha.com *.mail01.saloha.com *.mailgate.saloha.com *.mbox.saloha.com *.mx.saloha.com *.mx2.saloha.com *.pop.saloha.com *.pop3.saloha.com *.post.saloha.com *.random.saloha.com *.relay2.saloha.com *.remote.saloha.com saloha.com *.saloha.com *.server1.saloha.com *.sitemap.saloha.com *.sitemaps.saloha.com *.smtp1.saloha.com *.webmail.saloha.com *.wildcard.saloha.com *.ww1.saloha.com *.ww11.saloha.com *.ww16.saloha.com *.ww17.saloha.com *.ww25.saloha.com *.ww38.saloha.com *.www.saloha.com
*.find.thulshy.info thulshy.info *.thulshy.info *.vesak.thulshy.info