Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=labcorpappointments.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D7:AA:A7:6E:A7:0E:6A:8C:21:CC:96:72:3E:7E:48:47:13:8D:B4:26:0B:EF:51:D7:AC:84:25:52:64:F2:C6:D0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
52 domains
peterkilfoyle.com
*.peterkilfoyle.com
*.random.peterkilfoyle.com
*.webdisk.peterkilfoyle.com
*.ww25.peterkilfoyle.com
*.ww38.peterkilfoyle.com
*.com.gvalliance.org
*.cpcalendars.gvalliance.org
*.cpcontacts.gvalliance.org
gvalliance.org
*.gvalliance.org
*.mail.gvalliance.org
*.ns1.gvalliance.org
*.ns2.gvalliance.org
*.random.gvalliance.org
*.smtp.gvalliance.org
*.webdisk.gvalliance.org
*.webmail.gvalliance.org
hundeoperationsversicherung.de
*.hundeoperationsversicherung.de
*.filme.labcorpappointments.com
labcorpappointments.com
*.labcorpappointments.com
*.derpixon.newgound.com
newgound.com
*.newgound.com
*.ww38.newgound.com
norwegain.de
*.norwegain.de
pizlr.com
*.pizlr.com
*.random.pizlr.com
*.ww17.pizlr.com
stielwarzen.de
*.stielwarzen.de
*.random.trumanuniversity.com
trumanuniversity.com
*.trumanuniversity.com
*.ww38.trumanuniversity.com
*.cpd.xing18.cc
xing18.cc
*.xing18.cc
xmm121.xyz
*.xmm121.xyz
xn--daswrterbuch-7ib.de
*.xn--daswrterbuch-7ib.de
xn--glcksnummer-uhb.de
*.xn--glcksnummer-uhb.de
xn--jungunternehmerfrderung-nlc.de
*.xn--jungunternehmerfrderung-nlc.de
xn--krnergeblse-t8a9t.de
*.xn--krnergeblse-t8a9t.de
Other domains in certificate