Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=squaredealmedia.in
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 07, 2026
Valid Until
May 08, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F9:EE:3D:3E:8A:75:6C:4D:E1:FB:04:33:63:09:1D:E6:A8:29:1E:5E:41:28:1D:E9:A9:1E:EA:DB:6A:8C:22:5E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
heatherstrang.com
*.heatherstrang.com
*.programs.heatherstrang.com
aifinders.io
*.aifinders.io
airportshuttlebuses.au
*.airportshuttlebuses.au
barriga.es
*.barriga.es
*.sr.barriga.es
beatsaudio.com
*.beatsaudio.com
boomerspark.com
*.boomerspark.com
docto-lib.de
*.docto-lib.de
*.portal.docto-lib.de
flawlessweddingsfavors.beauty
*.flawlessweddingsfavors.beauty
fluttreact.xyz
*.fluttreact.xyz
gossipvoicezone.live
*.gossipvoicezone.live
healthyweigh.com
*.healthyweigh.com
infektionskrankheiten.com
*.infektionskrankheiten.com
*.metric.infektionskrankheiten.com
is.business
*.is.business
*.this.is.business
net71207.com
*.net71207.com
*.s8098.net71207.com
*.s9009.net71207.com
*.s9010.net71207.com
*.s9029.net71207.com
*.s9039.net71207.com
*.s9043.net71207.com
*.s9069.net71207.com
*.s9100.net71207.com
paramoumtplus.com
*.paramoumtplus.com
paramounrplus.com
*.paramounrplus.com
parmountplus.com
*.parmountplus.com
payoffmydebts.net
*.payoffmydebts.net
*.o7ff.pcontentdelivery.info
pcontentdelivery.info
*.pcontentdelivery.info
postasknsmsn.sbs
*.postasknsmsn.sbs
*.s.postasknsmsn.sbs
providerevernorth.com
*.providerevernorth.com
*.mail.rayongrealestate.com
rayongrealestate.com
*.rayongrealestate.com
*.test.rayongrealestate.com
*.ww1.rayongrealestate.com
*.ww11.rayongrealestate.com
smartbusinessblog.com.au
*.smartbusinessblog.com.au
*.codeigniter.squaredealmedia.in
squaredealmedia.in
*.squaredealmedia.in
*.auth.tembusjp.com
*.nfvhpsgydb.tembusjp.com
tembusjp.com
*.tembusjp.com
*.wildcard.tembusjp.com
*.aoserver.traidy.net
*.cb.traidy.net
*.mouskevitz.traidy.net
*.smtpa.traidy.net
*.thething.traidy.net
traidy.net
*.traidy.net
*.wbot.traidy.net
videorule34.com
*.videorule34.com
*.ww25.videorule34.com
*.cpcalendars.waltersheatingservices.com
*.random.waltersheatingservices.com
waltersheatingservices.com
*.waltersheatingservices.com
*.webdisk.waltersheatingservices.com
Other domains in certificate