76/100 SECURITY SCORE

Certificate Information

Subject
CN=collately.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 12, 2026
Valid Until
May 13, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1B:6D:F8:AC:DB:A3:50:80:6A:5C:BA:DD:AE:45:49:27:09:9B:0D:9A:40:8C:AC:39:D0:C7:86:5F:DC:78:F6:80
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
toughtco.com *.toughtco.com *.random.toughtco.com *.ww38.toughtco.com

Other domains in certificate

akteon.online *.akteon.online *.portal.akteon.online
*.about.algebraxyz.com algebraxyz.com *.algebraxyz.com *.analytics.algebraxyz.com *.asdfghj.algebraxyz.com *.burgerinthehotdogunlol.algebraxyz.com *.cybernet.algebraxyz.com *.edjucaation.algebraxyz.com *.edu.algebraxyz.com *.educatiom.algebraxyz.com *.education.algebraxyz.com *.educational.algebraxyz.com *.eeducation.algebraxyz.com *.intersterllar.algebraxyz.com *.jjjubaa.algebraxyz.com *.lgin.algebraxyz.com *.logi.algebraxyz.com *.login.algebraxyz.com *.mathamatics.algebraxyz.com *.one.algebraxyz.com *.orgin.algebraxyz.com *.sdfytydvbjhjvftfgbbtyb.algebraxyz.com *.swim.algebraxyz.com *.ww.algebraxyz.com *.zm.algebraxyz.com
badonk.com *.badonk.com *.ww25.badonk.com
balagans.co.uk *.balagans.co.uk *.ww25.balagans.co.uk
*.api.collately.co *.app.collately.co collately.co *.collately.co *.ww25.collately.co
corporateimpact.com.au *.corporateimpact.com.au
*.cloud.datainfo.it datainfo.it *.datainfo.it *.gw.datainfo.it
five88.ski *.five88.ski *.hostmaster.five88.ski *.luvjrm.five88.ski *.m.five88.ski *.mobile.five88.ski *.test.five88.ski *.www.five88.ski
howboutape.club *.howboutape.club
*.correo.icdccollege.bid *.emv1.icdccollege.bid icdccollege.bid *.icdccollege.bid *.mail.icdccollege.bid *.mta-sts.icdccollege.bid *.mx5.icdccollege.bid
luxurybeds.com.au *.luxurybeds.com.au
magarsangh.org *.magarsangh.org *.webmail.magarsangh.org
online-worldbank.com *.online-worldbank.com *.ww25.online-worldbank.com
*.com.picc.org picc.org *.picc.org
sagabet88.store *.sagabet88.store
someonecall.com *.someonecall.com
thetechnicalacademy.co.uk *.thetechnicalacademy.co.uk
tiendamuebles.com *.tiendamuebles.com *.ww25.tiendamuebles.com
uselavie.store *.uselavie.store
wwwchatgpt.com *.wwwchatgpt.com