76/100 SECURITY SCORE

Certificate Information

Subject
CN=maikr-pay.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 24, 2026
Valid Until
May 25, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CC:BB:EA:9A:5A:7B:FD:2D:FE:B0:16:69:8C:F0:31:7C:24:C0:4E:65:79:C9:99:16:4A:A2:D0:C1:A7:C1:B3:75
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
medwards.com *.medwards.com *.acceso.medwards.com *.access.medwards.com *.anyconnect.medwards.com *.app.medwards.com *.apps.medwards.com *.beta.medwards.com *.blog.medwards.com *.clientesvpn.medwards.com *.cloud.medwards.com *.crm.medwards.com *.demo.medwards.com *.desktop.medwards.com *.forum.medwards.com *.forums.medwards.com *.help.medwards.com *.labvirtual.medwards.com *.mobileconnect.medwards.com *.officevpn.medwards.com *.rdp.medwards.com *.rds.medwards.com *.rdweb.medwards.com *.receiver.medwards.com *.remote2.medwards.com *.remoteaccess.medwards.com *.remoto.medwards.com *.secure.medwards.com *.sitemaps.medwards.com *.ssl.medwards.com *.sslvpn2.medwards.com *.ts.medwards.com *.virtualstudent.medwards.com *.vpn.medwards.com *.vpn2.medwards.com *.vpn3.medwards.com *.webmail.medwards.com *.webvpn.medwards.com *.ww16.medwards.com *.ww17.medwards.com *.ww25.medwards.com *.ww38.medwards.com

Other domains in certificate

aimbridgeultipro.com *.aimbridgeultipro.com *.test.aimbridgeultipro.com *.ww.aimbridgeultipro.com
carolinaseyecenter.com *.carolinaseyecenter.com *.www.carolinaseyecenter.com
foxdisco.info *.foxdisco.info *.ww25.foxdisco.info *.ww38.foxdisco.info *.www.foxdisco.info
*.28ba9439-413b-48ce-9702-53a0834533c7.loveaglt.com *.api.loveaglt.com *.assets.loveaglt.com *.backup.loveaglt.com *.bcdihmarketing.loveaglt.com *.blog.loveaglt.com *.demo.loveaglt.com *.dev.loveaglt.com loveaglt.com *.loveaglt.com *.mail.loveaglt.com *.marketing.loveaglt.com *.members.loveaglt.com *.orjgfdev.loveaglt.com *.secure.loveaglt.com *.staging.loveaglt.com *.stg.loveaglt.com *.transparencia.loveaglt.com *.v1.loveaglt.com *.v2.loveaglt.com *.vmazjbcdihmarketing.loveaglt.com *.web.loveaglt.com *.ww8.loveaglt.com
maikr-pay.shop *.maikr-pay.shop *.ww38.maikr-pay.shop
*.api.maysa.it *.maximaitalia.maysa.it maysa.it *.maysa.it
smart.cymru *.smart.cymru
vardinorden.org *.vardinorden.org *.www1.vardinorden.org