Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=flexiplan.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 21, 2026
Valid Until
August 19, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
31:BF:7A:9C:24:E9:84:DB:1A:E7:20:33:0C:6C:5D:44:EE:59:E5:09:2A:AD:03:71:CF:F3:75:24:07:0C:D9:72
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
intimatefeel.com
*.intimatefeel.com
*.m.intimatefeel.com
*.www.intimatefeel.com
*.www3.intimatefeel.com
234we.com
*.234we.com
*.com.234we.com
*.org.234we.com
*.xyz.234we.com
*.access.bahp.org
bahp.org
*.bahp.org
*.cloud.bahp.org
*.dns3.bahp.org
*.m.bahp.org
*.rd.bahp.org
*.rds.bahp.org
*.rdweb.bahp.org
*.remote.bahp.org
*.sitemaps.bahp.org
*.ts.bahp.org
beautifulsaspen.com
*.beautifulsaspen.com
*.ev4xmf.beautifulsaspen.com
bioajmvbnklas.biz
*.bioajmvbnklas.biz
*.web.bioajmvbnklas.biz
buddyoverseas.info
*.buddyoverseas.info
*.imxgwyql.buddyoverseas.info
*.emss.flexiplan.com
*.falmail01.flexiplan.com
flexiplan.com
*.flexiplan.com
*.ww11.flexiplan.com
*.ww16.flexiplan.com
gear.buzz
*.gear.buzz
*.ww82.gear.buzz
goldenplainsfarmersmarket.com.au
*.goldenplainsfarmersmarket.com.au
*.dev.gonzalomatias.com
gonzalomatias.com
*.gonzalomatias.com
*.m.gonzalomatias.com
*.mk.gonzalomatias.com
*.portfolio.gonzalomatias.com
*.thor.gonzalomatias.com
impactsurge.co
*.impactsurge.co
newmission.co.uk
*.newmission.co.uk
*.www.newmission.co.uk
*.admin.orientalart.it
*.analytics.orientalart.it
*.analyze.orientalart.it
*.api.orientalart.it
*.app.orientalart.it
*.backend.orientalart.it
*.dash.orientalart.it
*.dashboard.orientalart.it
*.data.orientalart.it
*.dev.orientalart.it
*.forecast.orientalart.it
*.internal.orientalart.it
*.ms.orientalart.it
*.notexistsadmin.orientalart.it
orientalart.it
*.orientalart.it
*.remote.orientalart.it
*.report.orientalart.it
*.reports.orientalart.it
*.research.orientalart.it
*.stats.orientalart.it
*.visual.orientalart.it
*.app.rcdoo.shop
*.m.rcdoo.shop
*.mail.rcdoo.shop
*.notexistsm.rcdoo.shop
*.random.rcdoo.shop
rcdoo.shop
*.rcdoo.shop
*.www.rcdoo.shop
*.rustore.suhdfes.com
suhdfes.com
*.suhdfes.com
*.www.suhdfes.com
whichboathire.com.au
*.whichboathire.com.au
Other domains in certificate