Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=sustainableinvestor.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 25, 2026
Valid Until
July 24, 2026 77 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
69:F4:0E:17:1B:FC:98:7B:87:4B:BA:12:51:B9:86:19:FF:FE:C0:4B:2F:B1:90:47:5A:D1:AB:54:26:51:C4:4C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
iwate.com *.iwate.com *.api.iwate.com *.as9912.iwate.com *.att.iwate.com *.attwww.iwate.com *.autodiscover.iwate.com *.console.iwate.com *.dev.iwate.com *.dolce.iwate.com *.email.iwate.com *.forum.iwate.com *.fudai.iwate.com *.hanamaki.iwate.com *.hiraizumi.iwate.com *.hostmaster.iwate.com *.ichinohe.iwate.com *.ichinoseki.iwate.com *.iwaizumi.iwate.com *.iwate.iwate.com *.kamaishi.iwate.com *.kitakami.iwate.com *.kuji.iwate.com *.kunohe.iwate.com *.maesawa.iwate.com *.mail.iwate.com *.miyako.iwate.com *.mizusawa.iwate.com *.morioka.iwate.com *.mroioka.iwate.com *.ninohe.iwate.com *.noda.iwate.com *.ohasama.iwate.com *.ohno.iwate.com *.oshu.iwate.com *.otsuchi.iwate.com *.otushi.iwate.com *.pref.iwate.com *.rikuzentakata.iwate.com *.shiwa.iwate.com *.sitemap.iwate.com *.sumita.iwate.com *.sunhouse.iwate.com *.takizawa.iwate.com *.tanohata.iwate.com *.test.iwate.com *.tono.iwate.com *.vpn.iwate.com *.webmail.iwate.com *.ww11.iwate.com *.ww16.iwate.com *.ww25.iwate.com *.ww38.iwate.com *.www.iwate.com *.yahaba.iwate.com *.yamada.iwate.com

Other domains in certificate

balancedminds.rest *.balancedminds.rest
elitefoodcompass.food *.elitefoodcompass.food
emailpathosadvertising.com *.emailpathosadvertising.com
endeed.ch *.endeed.ch
*.api.imagingdiagnostic.it *.app.imagingdiagnostic.it *.backend.imagingdiagnostic.it *.dev.imagingdiagnostic.it imagingdiagnostic.it *.imagingdiagnostic.it
sustainableinvestor.co.uk *.sustainableinvestor.co.uk *.web.sustainableinvestor.co.uk
tmcqsdetvvf.com *.tmcqsdetvvf.com
www136772.vip *.www136772.vip
www39444.vip *.www39444.vip
www44781.vip *.www44781.vip
www47733.vip *.www47733.vip
wwwwxd17.vip *.wwwwxd17.vip
wwwwxd19.vip *.wwwwxd19.vip
*.a.yiyuanssr.com yiyuanssr.com *.yiyuanssr.com