Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=get-hed.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 09, 2026
Valid Until
July 08, 2026 62 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1B:A0:4E:A7:49:80:33:5F:5A:53:BB:1E:B3:76:29:43:6D:44:62:96:05:75:8E:46:B3:EF:66:B2:AD:40:0F:75
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
get-hed.com *.get-hed.com *.73802522-8a35-46bf-b85e-94f264db9d2f.get-hed.com *.adm.get-hed.com *.admin.get-hed.com *.app.get-hed.com *.auth.get-hed.com *.autoconfig.get-hed.com *.backend.get-hed.com *.beta.get-hed.com *.blog.get-hed.com *.chat.get-hed.com *.cms.get-hed.com *.dashboard.get-hed.com *.edu.get-hed.com *.ipv6.get-hed.com *.login.get-hed.com *.m.get-hed.com *.marketing.get-hed.com *.qa.get-hed.com *.settings.get-hed.com *.uat.get-hed.com *.vpn.get-hed.com

Other domains in certificate

ceritafantasi.com *.ceritafantasi.com
hcanswers.com *.hcanswers.com
*.date.interracialdating.pw interracialdating.pw *.interracialdating.pw
*.corp.iure.chat iure.chat *.iure.chat
*.hostmaster.medicalcodingandbillingclasses.com medicalcodingandbillingclasses.com *.medicalcodingandbillingclasses.com *.ns1.medicalcodingandbillingclasses.com *.ns2.medicalcodingandbillingclasses.com
*.noncd.oebb.de oebb.de *.oebb.de *.p.oebb.de *.tickets.oebb.de *.tk.oebb.de
*.dbis.solidstockart.com *.kfp.solidstockart.com solidstockart.com *.solidstockart.com *.ww.solidstockart.com
*.save.thumbnail-save.online thumbnail-save.online *.thumbnail-save.online
*.3b80331b-412a-4657-a6ca-76dd3ea32bc6.won88play.info *.40209cbc-0e37-4d78-998e-b9b82f694d69.won88play.info *.904e89ee-d5dd-40e6-940f-51f9589c170f.won88play.info *.a.won88play.info *.admin.won88play.info *.api.won88play.info *.app.won88play.info *.assets.won88play.info *.comune.won88play.info *.demo.won88play.info *.dev.won88play.info *.go.won88play.info *.hostmaster.won88play.info *.jizpgmhf.won88play.info *.members.won88play.info *.rustore.won88play.info *.staging.won88play.info *.test.won88play.info *.uat.won88play.info won88play.info *.won88play.info *.www.won88play.info
*.5e0b95c7-0d27-4557-bd4a-1dfdf241aeb6.worldlantic.com *.api.worldlantic.com *.app.worldlantic.com *.apps.worldlantic.com *.b25cab76-5294-4545-8b4d-7fab0013c549.worldlantic.com *.dev.worldlantic.com *.erctixwm.worldlantic.com *.external.worldlantic.com *.hostmaster.worldlantic.com *.portal.worldlantic.com *.public.worldlantic.com *.qa.worldlantic.com *.remote.worldlantic.com *.secure.worldlantic.com worldlantic.com *.worldlantic.com