76/100 SECURITY SCORE

Certificate Information

Subject
CN=maxmcalister.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0C:FE:E2:44:71:55:CA:9D:29:41:8A:AE:21:D8:65:FD:95:08:6E:A3:C5:32:10:83:F7:D3:27:85:CF:BE:78:C8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
staiger.com *.staiger.com *.anyconnect.staiger.com *.api.staiger.com *.app.staiger.com *.autodiscover.staiger.com *.ciscoasa.staiger.com *.cloudvpn.staiger.com *.connect.staiger.com *.crm.staiger.com *.customers.staiger.com *.dashboard.staiger.com *.dev.staiger.com *.email.staiger.com *.ftp.staiger.com *.gp.staiger.com *.help.staiger.com *.imap.staiger.com *.leads.staiger.com *.mail.staiger.com *.ns.staiger.com *.portal.staiger.com *.ra.staiger.com *.random.staiger.com *.ravpn.staiger.com *.relay.staiger.com *.remote.staiger.com *.sales.staiger.com *.secure.staiger.com *.sitemap.staiger.com *.sitemaps.staiger.com *.smtp.staiger.com *.ssl.staiger.com *.sslvpn.staiger.com *.support.staiger.com *.test.staiger.com *.vpn.staiger.com *.webmail.staiger.com *.ww1.staiger.com *.ww16.staiger.com *.www.staiger.com

Other domains in certificate

cjedwards.com *.cjedwards.com *.comune.cjedwards.com *.help.cjedwards.com *.mail.cjedwards.com *.sitemap.cjedwards.com *.sitemaps.cjedwards.com *.webmail.cjedwards.com
*.282c03148d96.fancytextgenerator.pro *.auth.fancytextgenerator.pro *.beta.fancytextgenerator.pro *.blog.fancytextgenerator.pro *.crxptomixer.fancytextgenerator.pro fancytextgenerator.pro *.fancytextgenerator.pro *.help.fancytextgenerator.pro *.openpgpkey.fancytextgenerator.pro *.site.fancytextgenerator.pro *.test.fancytextgenerator.pro *.web.fancytextgenerator.pro *.www.fancytextgenerator.pro
*.2.harvardgrads.com *.adrian.harvardgrads.com *.back.harvardgrads.com *.beta.harvardgrads.com *.classic.harvardgrads.com *.cloud.harvardgrads.com *.crm.harvardgrads.com *.datadog.harvardgrads.com *.ernie.harvardgrads.com harvardgrads.com *.harvardgrads.com *.host6.harvardgrads.com *.kazan.harvardgrads.com *.lider.harvardgrads.com *.pandax.harvardgrads.com *.restricted.harvardgrads.com *.store.harvardgrads.com *.wiki.harvardgrads.com *.ww17.harvardgrads.com *.ww25.harvardgrads.com
*.demo.maxmcalister.com *.load.maxmcalister.com *.mail.maxmcalister.com maxmcalister.com *.maxmcalister.com *.smail.maxmcalister.com