Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=allmed-ltd.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 10, 2026
Valid Until
April 10, 2026 46 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E6:8C:2D:13:AF:AF:DF:0A:AE:DB:2A:63:98:3B:BC:75:67:B6:DA:D5:B3:27:E1:09:34:0B:56:D8:B4:6D:49:0A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
kymodel.com *.kymodel.com *.lu.kymodel.com *.luc.kymodel.com *.ww1.kymodel.com *.ww25.kymodel.com *.www.kymodel.com

Other domains in certificate

allmed-ltd.com *.allmed-ltd.com *.products.allmed-ltd.com *.staging.allmed-ltd.com *.ww17.allmed-ltd.com
altadeefinizione.click *.altadeefinizione.click
auctionworldusa.com *.auctionworldusa.com
clinicamenta.com *.clinicamenta.com
*.autodiscover.dosurelieffoundation.com dosurelieffoundation.com *.dosurelieffoundation.com *.mail.dosurelieffoundation.com
dpuomctc.com *.dpuomctc.com
european-resilience-blog.org *.european-resilience-blog.org *.www.european-resilience-blog.org
famosasvip.blog *.famosasvip.blog
fetxco.com *.fetxco.com
gta-hub.com *.gta-hub.com
hdoday.cc *.hdoday.cc
incisionside.store *.incisionside.store *.www.incisionside.store
ioirror.cc *.ioirror.cc
*.ehoh6on3.kkdd123.cc kkdd123.cc *.kkdd123.cc *.rf9oh06a.kkdd123.cc *.sitemap.kkdd123.cc *.sitemaps.kkdd123.cc *.yq2u0eft.kkdd123.cc
magmanode.co *.magmanode.co *.panel.magmanode.co *.ww25.magmanode.co
magnat-market.pl *.magnat-market.pl
*.11.meesterschap.com meesterschap.com *.meesterschap.com *.static.meesterschap.com *.ww38.meesterschap.com
moelmsche-houltkoepp.de *.moelmsche-houltkoepp.de
newbalancecruz.com *.newbalancecruz.com *.uk.newbalancecruz.com
pa2t8.com *.pa2t8.com
pi2r2.com *.pi2r2.com
pi2z8.com *.pi2z8.com
*.apps.snushuttles.com *.portal.snushuttles.com snushuttles.com *.snushuttles.com *.ww25.snushuttles.com
stimichecks.com *.stimichecks.com
taroona.au *.taroona.au
*.jana.thaislima.studio *.luiza.thaislima.studio thaislima.studio *.thaislima.studio
ti5z9.com *.ti5z9.com
varistipmerkezi.com *.varistipmerkezi.com
womenshairhaven.com *.womenshairhaven.com
ws91.vip *.ws91.vip