76/100 SECURITY SCORE

Certificate Information

Subject
CN=swifts-logistics.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 23, 2026
Valid Until
May 24, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5C:76:D8:D7:45:39:8A:38:47:EE:5F:2B:6E:F0:81:88:A3:0E:0F:C0:97:8D:63:36:AF:43:4E:69:BD:01:F2:50
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
sdsolar.com *.sdsolar.com *.a.sdsolar.com *.analytics.sdsolar.com *.art.sdsolar.com *.hk.sdsolar.com *.mail.sdsolar.com *.mobi.sdsolar.com *.projects.sdsolar.com *.rustore.sdsolar.com *.stat.sdsolar.com *.ww16.sdsolar.com *.ww25.sdsolar.com

Other domains in certificate

*.api.cansrise.my *.assets.cansrise.my *.backend.cansrise.my *.beta.cansrise.my cansrise.my *.cansrise.my *.demo.cansrise.my *.dev.cansrise.my *.m.cansrise.my *.staging.cansrise.my *.test.cansrise.my
*.anyconnect.dgae.pt *.areadocomerciante.dgae.pt *.b-internet.dgae.pt *.backend.dgae.pt *.bi.dgae.pt *.ciscoasa.dgae.pt *.correo.dgae.pt *.cpanel.dgae.pt *.dev.dgae.pt dgae.pt *.dgae.pt *.email.dgae.pt *.exchangecorp.dgae.pt *.f22b445e-9c5f-41c9-bdb4-41f3a0c551c0.dgae.pt *.feirantes.dgae.pt *.gov.dgae.pt *.gp.dgae.pt *.horarios.dgae.pt *.mail.dgae.pt *.mail1.dgae.pt *.mail7.dgae.pt *.man.dgae.pt *.medu.dgae.pt *.owa.dgae.pt *.partner.dgae.pt *.rdp.dgae.pt *.remote.dgae.pt *.sirghe.dgae.pt *.vpn-0.dgae.pt *.vpn.dgae.pt *.vpn2x.dgae.pt *.vpnadm.dgae.pt *.webdisk.dgae.pt *.yuktxci-sandbox.dgae.pt
*.analytics.elixirinsurence.com *.core.elixirinsurence.com *.dash.elixirinsurence.com *.dashboard.elixirinsurence.com elixirinsurence.com *.elixirinsurence.com *.rds.elixirinsurence.com *.thzpjportal.elixirinsurence.com *.wildcard.elixirinsurence.com *.www.elixirinsurence.com
finetec.it *.finetec.it *.supreme.finetec.it
*.kafka.kas77slots.mom kas77slots.mom *.kas77slots.mom *.vpn.kas77slots.mom
nakedesign.pl *.nakedesign.pl
orca-online.org *.orca-online.org
*.1d817.smart-ph-com.cfd *.2dbks.smart-ph-com.cfd *.kwid9.smart-ph-com.cfd smart-ph-com.cfd *.smart-ph-com.cfd *.vhakn.smart-ph-com.cfd *.www.smart-ph-com.cfd *.xbh6h.smart-ph-com.cfd
swifts-logistics.com *.swifts-logistics.com