76/100 SECURITY SCORE

Certificate Information

Subject
CN=winderemere.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 04, 2026
Valid Until
August 02, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:29:70:A3:4C:9D:A5:75:69:D0:06:23:29:4A:BD:BF:9B:CB:21:76:5F:C7:E6:4A:BD:B8:79:87:61:95:8E:0C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
winderemere.com *.winderemere.com *.edp.winderemere.com *.glw.winderemere.com *.mail.winderemere.com *.marilynfrench.winderemere.com *.ww17.winderemere.com *.xl.winderemere.com

Other domains in certificate

beautifulglass.org *.beautifulglass.org
bloqueinformativo.info *.bloqueinformativo.info
*.0033de41-b07f-4cdd-9eb6-ef0e14929c91.gacor33c.xyz *.2dbks.gacor33c.xyz *.4qwa0.gacor33c.xyz *.525v4.gacor33c.xyz *.5qutp.gacor33c.xyz *.6cd9j.gacor33c.xyz *.8joac.gacor33c.xyz *.96c54.gacor33c.xyz *.a.gacor33c.xyz *.aowpq.gacor33c.xyz *.autoconfig.gacor33c.xyz *.autodiscover.gacor33c.xyz *.b5hyr.gacor33c.xyz *.bktlacpcalendars.gacor33c.xyz *.bnbod.gacor33c.xyz *.cc2mm.gacor33c.xyz *.cpcalendars.gacor33c.xyz *.cpcontacts.gacor33c.xyz *.cxie3.gacor33c.xyz *.d.gacor33c.xyz *.dykcau46cv.gacor33c.xyz *.emv1.gacor33c.xyz *.eye.gacor33c.xyz *.feew6.gacor33c.xyz *.firewall.gacor33c.xyz *.ftp.gacor33c.xyz *.fu1fc.gacor33c.xyz gacor33c.xyz *.gacor33c.xyz *.he00g.gacor33c.xyz *.hqizrypeugdykcau46cv.gacor33c.xyz *.i51qg.gacor33c.xyz *.kkytecc2mm.gacor33c.xyz *.l0r4m.gacor33c.xyz *.l1v3f.gacor33c.xyz *.mail.gacor33c.xyz *.muelvpp4gk.gacor33c.xyz *.nemln.gacor33c.xyz *.new.gacor33c.xyz *.nktjv.gacor33c.xyz *.ojxwbyjgaamuelvpp4gk.gacor33c.xyz *.q86h5.gacor33c.xyz *.rczhl.gacor33c.xyz *.rkuvx.gacor33c.xyz *.tpxa3.gacor33c.xyz *.transactions.gacor33c.xyz *.u46cv.gacor33c.xyz *.uhkhlrczhl.gacor33c.xyz *.webmail.gacor33c.xyz *.whm.gacor33c.xyz
*.jibing.laoste.net *.jwc.laoste.net laoste.net *.laoste.net *.mail.laoste.net *.work.laoste.net
*.04abf296-c77d-4006-baa3-e8ff35a10402.new88dd1.ltd *.3decacd0-6a7b-4297-81af-204107618999.new88dd1.ltd *.3e53235d-9f09-4b24-8c1d-8436034b39f2.new88dd1.ltd *.43d90c0f-f92e-4025-9944-27cfcfebaf29.new88dd1.ltd *.admin.new88dd1.ltd *.api.new88dd1.ltd *.app.new88dd1.ltd *.blog.new88dd1.ltd *.demo.new88dd1.ltd *.external.new88dd1.ltd *.intranet.new88dd1.ltd *.members.new88dd1.ltd *.my.new88dd1.ltd new88dd1.ltd *.new88dd1.ltd *.portal.new88dd1.ltd *.public.new88dd1.ltd *.share.new88dd1.ltd *.sharepoint.new88dd1.ltd *.test.new88dd1.ltd *.wp.new88dd1.ltd *.www.new88dd1.ltd