Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=claimsenduranceds.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 22, 2026
Valid Until
July 21, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BC:4F:2C:CB:74:27:76:BA:FB:E5:30:04:23:2E:FE:2D:D4:06:D0:3F:73:60:D9:BD:73:AF:1E:08:79:8E:AD:12
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
76 domains
generik4u.com
*.generik4u.com
anjana.live
*.anjana.live
annemette.com
*.annemette.com
*.www.annemette.com
aravinth.com
*.aravinth.com
*.ww25.aravinth.com
avenuemedicalpractice.co.uk
*.avenuemedicalpractice.co.uk
*.ww25.avenuemedicalpractice.co.uk
barehealth.co
*.barehealth.co
*.ww38.barehealth.co
brothersandsistersinarms.org
*.brothersandsistersinarms.org
btsook.xyz
*.btsook.xyz
*.ww25.btsook.xyz
*.ww38.btsook.xyz
claimsenduranceds.com
*.claimsenduranceds.com
complaint.live
*.complaint.live
expresscoachbuilders.co
*.expresscoachbuilders.co
*.ww25.expresscoachbuilders.co
first-bhp.pl
*.first-bhp.pl
*.kv2jqa7a.first-bhp.pl
*.random.first-bhp.pl
*.vwfbg.first-bhp.pl
*.api.gunstorm.io
*.autoconfig.gunstorm.io
*.bravo.gunstorm.io
*.gunscoin.gunstorm.io
gunstorm.io
*.gunstorm.io
*.v0.gunstorm.io
*.v1.gunstorm.io
*.v3.gunstorm.io
jackpotqk1.com
*.jackpotqk1.com
jk-cloud.art
*.jk-cloud.art
kimbop.io
*.kimbop.io
knowyourlocal.com.au
*.knowyourlocal.com.au
*.random.knowyourlocal.com.au
*.ww25.knowyourlocal.com.au
myfraud.com
*.myfraud.com
nobb.co.uk
*.nobb.co.uk
northmay.com
*.northmay.com
*.ws.northmay.com
*.wss.northmay.com
radomscan.online
*.radomscan.online
*.ww25.radomscan.online
*.ww38.radomscan.online
ruletadecolores.link
*.ruletadecolores.link
tella.pro
*.tella.pro
vnjob.xyz
*.vnjob.xyz
*.ww25.vnjob.xyz
*.ww38.vnjob.xyz
wsggpafljo.net
*.wsggpafljo.net
*.ww25.wsggpafljo.net
Other domains in certificate