76/100 SECURITY SCORE

Certificate Information

Subject
CN=chasehase.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 29, 2026
Valid Until
July 28, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5C:8A:AB:F4:1A:17:D8:45:25:F6:A3:C7:46:50:0E:05:8F:34:C8:76:EE:68:34:01:F4:0C:C8:3A:62:5A:03:AE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
chasehase.com *.chasehase.com *.agent.chasehase.com *.bi.chasehase.com *.dev.chasehase.com *.e.chasehase.com *.integration.chasehase.com *.marketing.chasehase.com *.random.chasehase.com *.sandbox.chasehase.com *.superset.chasehase.com *.video.chasehase.com

Other domains in certificate

anonymousemail.us *.anonymousemail.us *.comune.anonymousemail.us *.hostmaster.anonymousemail.us *.www.anonymousemail.us
*.ci.helicon-tex.com *.forum.helicon-tex.com helicon-tex.com *.helicon-tex.com *.panel.helicon-tex.com *.ww16.helicon-tex.com *.ww25.helicon-tex.com
*.api.integrityfitnesshub.run *.app.integrityfitnesshub.run *.assets.integrityfitnesshub.run *.demo.integrityfitnesshub.run *.dev.integrityfitnesshub.run *.ezhjyurd.integrityfitnesshub.run integrityfitnesshub.run *.integrityfitnesshub.run *.secure.integrityfitnesshub.run *.staging.integrityfitnesshub.run *.stg.integrityfitnesshub.run *.test.integrityfitnesshub.run *.v1.integrityfitnesshub.run *.www.integrityfitnesshub.run
*.arcueil.uewp.be *.avrille.uewp.be *.belleville.uewp.be *.bfqn.uewp.be *.bolbec.uewp.be *.bouffemont.uewp.be *.brehan.uewp.be *.cherbourg.uewp.be *.chevremont.uewp.be *.corbreuse.uewp.be *.crain.uewp.be *.dhluz.uewp.be *.duhort.uewp.be *.frejairolles.uewp.be *.gerzat.uewp.be *.gonfreville.uewp.be *.hatten.uewp.be *.ifs.uewp.be *.igny.uewp.be *.ijcz.uewp.be *.jaux.uewp.be *.la-neuvillette.uewp.be *.les-ulis.uewp.be *.lesneven.uewp.be *.lunay.uewp.be *.mandelieu.uewp.be *.maubeuge.uewp.be *.montesson.uewp.be *.montrejeau.uewp.be *.neuilly.uewp.be *.nimes.uewp.be *.pantin.uewp.be *.plougar.uewp.be *.puteaux.uewp.be *.qispvgn.uewp.be *.quincey.uewp.be *.rugles.uewp.be *.rumegies.uewp.be *.saubens.uewp.be *.strasbourg.uewp.be *.tigy.uewp.be *.trelaze.uewp.be uewp.be *.uewp.be *.urqclt.uewp.be *.vendome.uewp.be *.verson.uewp.be *.vigneux.uewp.be *.wittes.uewp.be *.wndqlws.uewp.be *.ww25.uewp.be *.xxaizjl.uewp.be