Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=zyina.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 12, 2026
Valid Until
September 10, 2026 82 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0C:5F:BB:BB:AF:BD:FD:20:25:CF:BF:49:61:34:5A:CD:D9:6A:29:B0:6D:28:F3:33:28:1E:65:B4:49:8B:00:80
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
cds7.com *.cds7.com *.8ab1c10a-0417-46af-a0f1-9d2613fdf703.cds7.com *.api.cds7.com *.auth.cds7.com *.client.cds7.com *.connectvpn.cds7.com *.docs.cds7.com *.dqulhrsb.cds7.com *.external.cds7.com *.gateway.cds7.com *.localhost.cds7.com *.login.cds7.com *.m.cds7.com *.members.cds7.com *.mobile.cds7.com *.my.cds7.com *.new.cds7.com *.office.cds7.com *.portal.cds7.com *.public.cds7.com *.remoteaccess.cds7.com *.sharepoint.cds7.com *.sslvpn.cds7.com *.sso.cds7.com *.vpn.cds7.com *.vpn1.cds7.com *.vpn2.cds7.com *.web.cds7.com *.webvpn.cds7.com *.ww12.cds7.com *.www.cds7.com *.xivluqrt.cds7.com

Other domains in certificate

cognition.finance *.cognition.finance *.cpanel.cognition.finance *.n42013.cognition.finance
*.5izwboslj8.lmsda.com lmsda.com *.lmsda.com *.ptfhghzhcy.lmsda.com
*.admin.webguitartabs.com webguitartabs.com *.webguitartabs.com *.ww1.webguitartabs.com *.ww17.webguitartabs.com
*.access.wyima.com *.anyconnect.wyima.com *.api.wyima.com *.clientesvpn.wyima.com *.connect.wyima.com *.dev.wyima.com *.drvpn.wyima.com *.gateway.wyima.com *.imap.wyima.com *.kz.wyima.com *.m.wyima.com *.mobileconnect.wyima.com *.officevpn.wyima.com *.portal.wyima.com *.remoteaccess.wyima.com *.remoto.wyima.com *.secure.wyima.com *.secureconnect.wyima.com *.securesmtp.wyima.com *.securevpn.wyima.com *.ssl.wyima.com *.sslvpn.wyima.com *.staging.wyima.com *.studentsvpn.wyima.com *.test.wyima.com *.vpn.wyima.com *.vpn2.wyima.com *.webvpn.wyima.com *.www.wyima.com wyima.com *.wyima.com
*.www.xn--ghqzh.com xn--ghqzh.com *.xn--ghqzh.com
*.n6oxem.yunqiaogw.com yunqiaogw.com *.yunqiaogw.com
*.m.zyina.com *.rds.zyina.com *.rdweb.zyina.com *.www.zyina.com zyina.com *.zyina.com