Open
Cached
·
just now
95/100
SECURITY SCORE
Certificate Information
Subject
CN=desk.cs.zohohost.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 06, 2026
Valid Until
April 06, 2026
83 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
86:AE:94:F4:4D:5A:D5:4C:A1:06:1E:AD:EB:EB:BA:F6:B9:95:4F:F2:62:95:52:70:56:CD:FC:89:B9:76:59:4A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=63072000;includeSubDomains
Content-Security-Policy
Basic
script-src; object-src; base-uri; +1 more
script-src 'self' 'strict-dynamic' static.zohocdn.com salesiq.zoho.com dtzpfzv31buvf.cloudfront.net cdn.pagesense.io js.zohocdn.com widgets.zohosalesiq.com zohotagmanager.cdn.pagesense.io 'nonce-ee65a74ed6c1421b35972d28fe890ef2';object-src 'none';base-uri 'self' static.zohocdn.com;report-uri https://logsapi.zoho.com/csplog?service=support;
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
accelerometer=(), ambient-light-sensor=(), bluetooth=(), compute-pressure=(), document-domain=(), encrypted-media=(), gamepad=(), gyroscope=(), hid=(), magnetometer=(), midi=(), screen-wake-lock=(), serial=(), speaker-selection=(), usb=(), xr-spatial-tracking=()
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 4 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
73 domains
help.playinga.com
support.2l2o.com
support.3fiftynine.nl
support.afreeka-na.com
suporte.alright.network
sat.bertic.cat
help.brighterbalance.app
support.cc-efi.com
hr.cioxhealth.com
helpdesk.cloudlaine.com
support.medilink.com.ph
support.simpro.com.tn
support.combocleaner.com
support.corutec.com
support.cozzmic.com
support.credenti.com
support.cstbusiness.co
support.cybertechconnection.com
desk.designmagic.support
support.digital.foundation
newsupport.digitaldocs.net
support.digitaloptometrics.com
help.dispensary-tree.com
support.eight8.gr
helpdesk.eimsolutions.com
portal.et.support
www.execupay.help
support.firstclassict.co.uk
support.fleetilla.com
help.freshcue.app
support.giviholdings.com
support.globalcerts.net
suporte.h8b.com.br
support.helpdesk-za.com
help.instantuc.com
support.itservice.com.au
support.joinpomegranate.com
partner.locafox.de
support.marlinhost.com
support.myibistro.com
help2.obsidianportal.com
am.opsi.it
support.optimation.online
help.ordyx.com
kb.orionsoftsol.com
helpdesk.osmosvote.com
support.oxilio.com
support.pedders.com.au
ticket.plainprotect.us
support.reeladventurebooking.com
suporte.resentech.com.br
support.sales-push.com
help.saleslogic.io
support.servitech.com
help.stonehenge.fr
support.synertechsolutions.com
kb.syrow.com
support.taxibutler.com
support.team240.net
support.timeandmaterial.com
support.totalworksit.com
support.treesana.com
help.unmannedtech.co.uk
support.virginiabenefits.com
guides.vitasupplements.com
soporte.vixonic.com
regulatory.worklifeleaf.com
retail.worklifeleaf.com
ayuda.yalm.com.ar
support.zacdgroup.com
support.zeroadmin.com
desk.cs.zohohost.com
support.zophos.org
Other domains in certificate