80/100 SECURITY SCORE

Certificate Information

Subject
CN=incupie.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 14, 2025
Valid Until
March 14, 2026 62 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:91:4C:C6:38:1E:43:82:37:52:87:61:C9:88:37:9C:04:8C:33:26:0C:EE:1E:73:C1:34:58:D6:E8:A1:7F:79
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Configured (Restricts certificate issuance)
Current Issuer
Authorized (Matches CAA policy)
Recommendations
  • Consider using critical flag (flags=128) for stricter CAA enforcement
  • You have authorized 4 CAs - consider limiting to only the CAs you actively use
  • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts

Subject Alternative Names

100 domains
edificioviaalcedrovi.com

Other domains in certificate

www.23co.dev
www.wis.ac.th
app.aidress.me
aleykumselam.net
apparate.dev
cardmon.store
www.civicsi.com.br
anything-ui.framework.co.il ikleek.co.il
backend-seo.tb.co.th democrm.weget.co.th ecommerce-solution.co.th ftd.weget.co.th
www.beyazguldanismanlik.com.tr
copernico.life
dekode.co.za
dissy.dev
links.dtbeechey.dev
www.emmanuelaina.dev
etunepinceede.fr
bloodline.fret12.com
www.fusabowl.com
blog.gavinda.dev www.gavinda.dev
lhm-fk.get-ikigai.com lhm-nwk-3vd.get-ikigai.com
vendor.golverd.com
apppay.goyirunway.com
www.hannahvonstevens.com
www.hanoijackpots.com
www.haorongbam.com
tracker.healthylife.com.au
convenia.hrbot.com.br
incupie.com
kick.inprod.dev
www.ionrise.io
unwanteds.isontic.dev
www.jasc-pondicherry.com
organit.juanm04.com
asibp.k1k1.dev
www.kiryuanzu.dev
www.l0l.dev
lucaschampagne.dev
static.maharshpatel.dev
bottle.marcosgomesneto.dev
mathquiz.io
mobile.meschantiers.io
video.mindheals.org
dev.nimber.io
old.ninaterhaar.dev
nohe.dev
www.nuca.io
nutrifood.ie
www.nutsh.io
blog.orton.io
app.overlake.io
parinyawongmanee.dev
testdata-stats.pclip.dev
orderportal-signin.pharox.io raileasy-dev.pharox.io smarti.pharox.io
phonecompany.io
www.photosapiens.io
media.piny.dev
play2d.games
playaescondida.uy
timer.popweb.dev
staging.practicemakes.io
www.pricekite.io
headsign.railcity.hu
earth.rajtoshranjan.dev
letter-hunt.reaact.com.br
refactor.dev
rezso.dev www.rezso.dev
rhythmplus.io
rima.io www.rima.io
simon.rjson.dev
www.rousseau.dev zero.rousseau.dev
www.rupert-tech.com
sainsnews.com
portfolio.samuelcunha.dev samuelcunha.dev
social.sbabty.com
scout-projects.strawberry.se
tapasdhar.com
tapflare.com
next-admin.tapnotion.com
tenflr.com
thehalalfoodie.com
transit-advisors.com
trycuddle.com
aspire.upreach.org.uk
widhanitech.com
xentto.com
l.yoni.tech
zeroink.in