Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=asigurarisibiu.ro
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
November 26, 2025
Valid Until
February 24, 2026
57 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:E6:3A:C4:26:40:03:B7:DA:C6:18:27:0A:C7:26:64:CE:5D:11:7C:14:28:FA:E9:AF:FD:32:B4:C4:64:F9:8E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 4 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
100 domains
endarlani.com
abandco.in
adjust.pk
advancepts.com
jarvis.alexako.com
www.alieftwumasi.com
arabicarp.top
www.aryantechworld.com
www.ashishr.me
asigurarisibiu.ro
www.asigurarisibiu.ro
links.avancargo.com
solutions.azimonti.com
bivalund.se
usuarios.blackbit.com.ar
bravijanasevavedike.com
secretsanta.catalyst.sh
cerritoscondoplaza.com
www.charts.io
chaseandersson.com
sms.claritychi.com
dapp.isoma.co.id
monitor.unikey.co.il
dca-alpha.abbon.co.th
staging-media-analytics.cox2m.com
dev.dash-n.com
davidthompson.dev
dhruvrana.dev
dotryan.com
www.dsdevs.com
dpm.e4hp.com
eddietreefelling.co.za
rebecca.edmund.hk
www.elouenprojet.com
secure.erzen.tk
ffftickets.com
tracking.fleetable.tech
flow.lease
garrettwalter.dev
auth.gesturepractice.com
jpmc.getcafex.com
sn09.getcafex.com
www.gobss.io
www.gobss.nz
greenupcities.com
staging.hellonimbly.com
infraconsheltersafrica.com
isitcraft.com
iwas.coach
www.iwas.coach
www.jeffreylansford.com
timer.jeromebrown.co.nz
med.jiwf.org
portal.joinin2.com
kaneats.ca
kickassbureaucracy.com
kitmate.app
knowtr.ai
lakecoredigital.com
www.lakecoredigital.com
mopermitpro.lesik.site
lhospitalito.com
lumicare.one
www.makeusa.us
malayp.dev
www.mastepalm.com.br
minhthong.group
blog.mookjp.io
www.myluck.xyz
nashexposure.co.za
www.nasiri.it
dash.neuvo.ai
js.neuvo.ai
nexgen.ge
nextzoft.com
nicolasauer.com
www.nitinshokeen.com
obaspace.com
ourmind.com.br
paranoia.app
parkolasfelugyelet.org
pdccollab.com
shop.princetrinityholdings.co.za
www.quickytools.com
safepass.rajrajhans.com
riyaorganics.com.au
rukatype.com
runraise.me
app.siomotto.com
www.sunrisegeneralconstructionsf.com
ebill.tabsquare.com
the2nddeclaration.com
portal.thebusnetwork.com
fmvp.stg.webedia.tech
wee-delhi.co.uk
whatif.app
api.workify.io
xet-the.com
ref.zebull.in
gv.zzxxccvv.com
Other domains in certificate