Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=maikr-pay.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 24, 2026
Valid Until
May 25, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CC:BB:EA:9A:5A:7B:FD:2D:FE:B0:16:69:8C:F0:31:7C:24:C0:4E:65:79:C9:99:16:4A:A2:D0:C1:A7:C1:B3:75
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
medwards.com
*.medwards.com
*.acceso.medwards.com
*.access.medwards.com
*.anyconnect.medwards.com
*.app.medwards.com
*.apps.medwards.com
*.beta.medwards.com
*.blog.medwards.com
*.clientesvpn.medwards.com
*.cloud.medwards.com
*.crm.medwards.com
*.demo.medwards.com
*.desktop.medwards.com
*.forum.medwards.com
*.forums.medwards.com
*.help.medwards.com
*.labvirtual.medwards.com
*.mobileconnect.medwards.com
*.officevpn.medwards.com
*.rdp.medwards.com
*.rds.medwards.com
*.rdweb.medwards.com
*.receiver.medwards.com
*.remote2.medwards.com
*.remoteaccess.medwards.com
*.remoto.medwards.com
*.secure.medwards.com
*.sitemaps.medwards.com
*.ssl.medwards.com
*.sslvpn2.medwards.com
*.ts.medwards.com
*.virtualstudent.medwards.com
*.vpn.medwards.com
*.vpn2.medwards.com
*.vpn3.medwards.com
*.webmail.medwards.com
*.webvpn.medwards.com
*.ww16.medwards.com
*.ww17.medwards.com
*.ww25.medwards.com
*.ww38.medwards.com
aimbridgeultipro.com
*.aimbridgeultipro.com
*.test.aimbridgeultipro.com
*.ww.aimbridgeultipro.com
carolinaseyecenter.com
*.carolinaseyecenter.com
*.www.carolinaseyecenter.com
foxdisco.info
*.foxdisco.info
*.ww25.foxdisco.info
*.ww38.foxdisco.info
*.www.foxdisco.info
*.28ba9439-413b-48ce-9702-53a0834533c7.loveaglt.com
*.api.loveaglt.com
*.assets.loveaglt.com
*.backup.loveaglt.com
*.bcdihmarketing.loveaglt.com
*.blog.loveaglt.com
*.demo.loveaglt.com
*.dev.loveaglt.com
loveaglt.com
*.loveaglt.com
*.mail.loveaglt.com
*.marketing.loveaglt.com
*.members.loveaglt.com
*.orjgfdev.loveaglt.com
*.secure.loveaglt.com
*.staging.loveaglt.com
*.stg.loveaglt.com
*.transparencia.loveaglt.com
*.v1.loveaglt.com
*.v2.loveaglt.com
*.vmazjbcdihmarketing.loveaglt.com
*.web.loveaglt.com
*.ww8.loveaglt.com
maikr-pay.shop
*.maikr-pay.shop
*.ww38.maikr-pay.shop
*.api.maysa.it
*.maximaitalia.maysa.it
maysa.it
*.maysa.it
smart.cymru
*.smart.cymru
vardinorden.org
*.vardinorden.org
*.www1.vardinorden.org
Other domains in certificate