Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=himedepot.ca
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 26, 2026
Valid Until
July 25, 2026
34 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F9:38:81:2C:42:2E:10:46:A0:43:26:6A:2E:6F:8A:52:A8:F5:66:A1:1B:60:AC:DE:55:49:0B:4A:3C:5C:C6:C8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
himedepot.ca
*.himedepot.ca
*.oass.himedepot.ca
*.random.himedepot.ca
*.admin.offsidebet.it
*.analytic.offsidebet.it
*.analyze.offsidebet.it
*.api.offsidebet.it
*.app.offsidebet.it
*.backend.offsidebet.it
*.bi.offsidebet.it
*.dashboards.offsidebet.it
*.demo.offsidebet.it
*.dev.offsidebet.it
*.metric.offsidebet.it
*.metrics.offsidebet.it
offsidebet.it
*.offsidebet.it
*.redash.offsidebet.it
*.reporting.offsidebet.it
*.stats.offsidebet.it
*.superset.offsidebet.it
*.supersets.offsidebet.it
*.visual.offsidebet.it
*.0ca83e8a-d798-43ad-b498-e90b0c391d6d.rin88.mobi
*.2c8feb3e-8752-4f32-9c93-70f745b21de4.rin88.mobi
*.admin.rin88.mobi
*.ajovoapp.rin88.mobi
*.api.rin88.mobi
*.app.rin88.mobi
*.assets.rin88.mobi
*.b6d0b22e-b430-4ea3-b48d-e98c029feb4a.rin88.mobi
*.backup.rin88.mobi
*.demo.rin88.mobi
*.ef08aec9-561d-4065-ae60-82a6e3909e70.rin88.mobi
*.ftp.rin88.mobi
*.insight.rin88.mobi
*.ipv6.rin88.mobi
*.jkcdetcpzxbackup.rin88.mobi
*.login.rin88.mobi
*.mysql.rin88.mobi
*.orkuuipv6.rin88.mobi
*.pop3.rin88.mobi
rin88.mobi
*.rin88.mobi
*.testing.rin88.mobi
*.vpn2.rin88.mobi
*.39ir6.tiktokmct02.top
*.8hy5t.tiktokmct02.top
*.b54zj.tiktokmct02.top
*.fz4qv.tiktokmct02.top
*.kwid9.tiktokmct02.top
*.osldc.tiktokmct02.top
tiktokmct02.top
*.tiktokmct02.top
*.y04uw.tiktokmct02.top
*.z44ag.tiktokmct02.top
*.eu.wargamin.net
*.hostmaster.wargamin.net
*.mx7.wargamin.net
*.ns1.wargamin.net
*.ns2.wargamin.net
wargamin.net
*.wargamin.net
*.89476e07-40db-4583-83f7-258fe31e9531.webnetwok.com
*.a.webnetwok.com
*.admin.webnetwok.com
*.api.webnetwok.com
*.app.webnetwok.com
*.assets.webnetwok.com
*.backup.webnetwok.com
*.dashboard.webnetwok.com
*.demo.webnetwok.com
*.dev.webnetwok.com
*.mail.webnetwok.com
*.mailer.webnetwok.com
*.marketing.webnetwok.com
*.qa.webnetwok.com
*.sbz3jh.webnetwok.com
*.secure.webnetwok.com
*.staging.webnetwok.com
*.stg.webnetwok.com
*.test.webnetwok.com
*.uat.webnetwok.com
*.v1.webnetwok.com
*.v2.webnetwok.com
*.web.webnetwok.com
webnetwok.com
*.webnetwok.com
Other domains in certificate