SSL Verification Bypassed

The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.

Reason:

Hostname Mismatch - certificate is issued for www.choosefreestyle.com, qat.choosefreestyle.com, not for choosefreestyle.com

75/100 SECURITY SCORE

Certificate Information

Subject
C=US, ST=Illinois, O=Abbott Laboratories, CN=abbi.abbott
Issuer
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
Valid From
February 10, 2025
Valid Until
February 10, 2026 63 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D6:B3:FC:BB:0A:61:F1:A2:5A:23:C5:4D:68:8E:0F:2D:A9:92:DD:70:2C:19:5F:36:92:B7:F1:8C:B2:5D:23:3C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

106 domains
freestyleprecision.com www.freestyleprecision.com

Other domains in certificate

abbi.abbott
abbibot.abbott
abbotdiagnostics.com
abbott.at
abbott.be
abbott.ca
abbott.ch www.abbott.ch
abbott.cl
abbott.co.jp
abbott.co.uk
binaxnow-navica.abbott.com canal.abbott.com cardiovascular.abbott.com committed2pad.abbott.com eu-dpo.abbott.com healthtech.abbott.com jobs.abbott.com life-changing-tech.abbott.com lifechangingtech.abbott.com navica.abbott.com neuromodulation.abbott.com pmis.abbott.com proveedoresargentina.abbott.com redirectserver.abbott.com
abbott.com.co
abbott.com.mx
abbott.de
abbott.fi
abbott.fr add.abbott.fr
abbott.ie
abbott.in
abbott.mx
abbott.pl
abbott.pt
abbott.se
abbott.sk www.abbott.sk
abbott.us
abbott.vn acare.abbott.vn
abbottarabia.com
abbottateuropcr.com
abbottatlinc.com
abbottattct.com
abbottaustralasia.com.au
abbottbox.com
abbottbrasil.com.br
abbottcore.com
abbottcoronavirus.com
abbottstore.abbott
americalatina.abbott
ar.abbott
ous.assertiq.app us.assertiq.app
br.abbott
brasil.abbott
chn.abbott
cl.abbott
cn.abbott
co.abbott
abbott.co.id
abbott.co.il
abbott.co.in
abbott.com.hk
abbott.com.my
abbott.com.ph
abbott.com.pk
abbott.com.sg
abbott.com.tr
abbott.com.tw
czechia.abbott
czechrepublic.abbott
espana.abbott
freestylelibrepro.us www.freestylelibrepro.us
freestyleneo.com www.freestyleneo.com
greatbritain.abbott
ind.abbott
ireland.abbott
ita.abbott
latinamerica.abbott
life-changing-tech.abbott
lifechangingtech.abbott
nederland.abbott
netherlands.abbott
news.abbott
nutricionespecializada.abbott
piccadilly.abbott
sg.abbott
sgp.abbott
shop.abbott
spain.abbott
store.abbott
switzerland.abbott
uk.abbott
unitedkingdom.abbott
unitedstates.abbott
us.abbott
vision.abbott
welcome.abbott
www.abbott