Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=joynara1004.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
May 28, 2026
Valid Until
August 26, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
37:E5:BA:F5:C6:A3:8E:73:EF:06:ED:B0:5A:13:4E:7D:18:C8:C7:7A:47:70:15:52:08:EF:DA:DC:C6:3F:1A:AD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
leverus.pro
*.leverus.pro
*.user.leverus.pro
*.wt.leverus.pro
*.ww25.leverus.pro
*.a.astroweb.co
astroweb.co
*.astroweb.co
*.acceso.goitaly.net
*.access.goitaly.net
*.anyconnect.goitaly.net
*.app.goitaly.net
*.carnivalbags.goitaly.net
*.cisapp.goitaly.net
*.citrix.goitaly.net
*.clientesvpn.goitaly.net
*.costress-retrautodiscovecarnivalbags.goitaly.net
*.cpanel.goitaly.net
*.cpcalendars.goitaly.net
*.dashboard.goitaly.net
*.desktopstudent.goitaly.net
goitaly.net
*.goitaly.net
*.helpdesk.goitaly.net
*.hq.goitaly.net
*.intra.goitaly.net
*.m.goitaly.net
*.mail.goitaly.net
*.notexistscarnivalbags.goitaly.net
*.outlook.goitaly.net
*.owa.goitaly.net
*.pop.goitaly.net
*.ra-vpn.goitaly.net
*.ra.goitaly.net
*.remote2.goitaly.net
*.remoto.goitaly.net
*.reporting.goitaly.net
*.server.goitaly.net
*.ssl.goitaly.net
*.superset.goitaly.net
*.uat.goitaly.net
*.uodvgcby.goitaly.net
*.vandyke.goitaly.net
*.virtualapps.goitaly.net
*.visual.goitaly.net
*.webmail.goitaly.net
*.workspace.goitaly.net
*.www.goitaly.net
joynara1004.com
*.joynara1004.com
*.ww38.joynara1004.com
sitreameast.app
*.sitreameast.app
*.1e27dc5a-be12-4a9a-ae84-4aee711941ff.thehealthymensource.com
*.54494c25-8c27-4754-b358-be9106ac252a.thehealthymensource.com
*.5d83b976-4bc3-4598-aa34-d3317e7d66e6.thehealthymensource.com
*.a.thehealthymensource.com
*.admin.thehealthymensource.com
*.app.thehealthymensource.com
*.atendimento.thehealthymensource.com
*.backup.thehealthymensource.com
*.cloud.thehealthymensource.com
*.correo.thehealthymensource.com
*.dashboard.thehealthymensource.com
*.dma.thehealthymensource.com
*.intranet.thehealthymensource.com
*.kaowsndx.thehealthymensource.com
*.m.thehealthymensource.com
*.marketing.thehealthymensource.com
*.mta-sts.thehealthymensource.com
*.new.thehealthymensource.com
*.portal.thehealthymensource.com
*.qa.thehealthymensource.com
*.rd.thehealthymensource.com
*.rdweb.thehealthymensource.com
*.shop.thehealthymensource.com
*.sitemaps.thehealthymensource.com
*.stg.thehealthymensource.com
*.store.thehealthymensource.com
thehealthymensource.com
*.thehealthymensource.com
*.tlokgcorreo.thehealthymensource.com
*.twhblkaowsndx.thehealthymensource.com
*.uat.thehealthymensource.com
*.v1.thehealthymensource.com
*.vpn.thehealthymensource.com
*.web.thehealthymensource.com
*.ww25.thehealthymensource.com
*.ww6.thehealthymensource.com
*.www.thehealthymensource.com
Other domains in certificate