76/100 SECURITY SCORE

Certificate Information

Subject
CN=discursive.net
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 26, 2026
Valid Until
August 24, 2026 59 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B0:6A:AC:D2:0C:84:26:35:4F:F3:53:B6:91:B9:8E:9A:1E:A9:32:32:3A:75:33:BC:E7:EF:60:0E:A4:C7:4C:4B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
lotusdevgroup.tech *.lotusdevgroup.tech *.apply.lotusdevgroup.tech *.bbs.lotusdevgroup.tech *.crm.lotusdevgroup.tech *.info.lotusdevgroup.tech *.magento.lotusdevgroup.tech *.mx01.lotusdevgroup.tech *.my.lotusdevgroup.tech *.old.lotusdevgroup.tech *.random.lotusdevgroup.tech *.secure.lotusdevgroup.tech *.ups.lotusdevgroup.tech *.web.lotusdevgroup.tech *.webmail.lotusdevgroup.tech *.ws.lotusdevgroup.tech *.ww38.lotusdevgroup.tech

Other domains in certificate

*.17.2af.live *.1d.2af.live *.1f.2af.live *.1k.2af.live *.1n.2af.live 2af.live *.2af.live *.autoconfig.2af.live *.baa0978d-61a9-49ae-9429-3340128b8055.2af.live *.intranet.2af.live *.m.2af.live *.portal.2af.live *.rustore.2af.live *.ww1.2af.live *.www.2af.live *.x.2af.live *.z.2af.live
achievefyxerclash.info *.achievefyxerclash.info *.kkvji7.achievefyxerclash.info
*.592eeab7-dd2e-4768-b39c-d2d8d356f88a.discursive.net *.5bde2e5c-2740-4280-946d-438985e75aa1.discursive.net *.7400963b-17a5-4ef7-9df6-eb325c21012e.discursive.net *.access.discursive.net *.apps.discursive.net *.connectvpn.discursive.net *.crackers.discursive.net discursive.net *.discursive.net *.m.discursive.net *.office.discursive.net *.ofnztdashboard.discursive.net *.qa.discursive.net *.random.discursive.net *.rdweb.discursive.net *.remoteaccess.discursive.net *.secure.discursive.net *.secureaccess.discursive.net *.sitemap.discursive.net *.sslvpn.discursive.net *.ts.discursive.net *.v2.discursive.net *.vpn1.discursive.net *.web.discursive.net *.webconnect.discursive.net *.wildcard.discursive.net *.ww1.discursive.net *.ww7.discursive.net *.www.discursive.net
*.admin.gratuitos.it *.api.gratuitos.it *.dashboards.gratuitos.it *.demo.gratuitos.it gratuitos.it *.gratuitos.it *.metric.gratuitos.it *.report.gratuitos.it *.rnrkoofdxxowa.gratuitos.it *.staging.gratuitos.it *.stats.gratuitos.it *.supersets.gratuitos.it *.visual.gratuitos.it
kovcifra.click *.kovcifra.click *.ww25.kovcifra.click
littlecouponbook.com *.littlecouponbook.com *.sitemap.littlecouponbook.com
sacha.photography *.sacha.photography
*.metals.wwwwellsfargo.co wwwwellsfargo.co *.wwwwellsfargo.co