76/100 SECURITY SCORE

Certificate Information

Subject
CN=fizkult-ura.site
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026 79 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:21:65:34:1F:8F:CC:89:1D:C8:46:98:D9:05:6D:7A:0B:88:6E:D1:AC:A6:3A:6D:FF:36:31:82:74:78:64:AB
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
meactivity.com *.meactivity.com *.api.meactivity.com *.assets.meactivity.com *.backend.meactivity.com *.backup.meactivity.com *.cloud.meactivity.com *.dashboard.meactivity.com *.mail.meactivity.com *.mailer.meactivity.com *.marketing.meactivity.com *.pagamento.meactivity.com *.rd.meactivity.com *.rds.meactivity.com *.rdweb.meactivity.com *.remote.meactivity.com *.secure.meactivity.com *.sitemap.meactivity.com *.staging.meactivity.com *.stg.meactivity.com *.test.meactivity.com *.uat.meactivity.com *.v1.meactivity.com *.v2.meactivity.com *.web.meactivity.com

Other domains in certificate

316555.loan *.316555.loan
395786.top *.395786.top
3p97cyd28f.top *.3p97cyd28f.top
*.a31bd188-f645-482a-865a-f02bb74bbda9.atfetchasquadshq.com atfetchasquadshq.com *.atfetchasquadshq.com *.ibhoicloud.atfetchasquadshq.com
casc2kj.lat *.casc2kj.lat *.new.casc2kj.lat
cedarshadows.com *.cedarshadows.com *.m.cedarshadows.com
consolidatedebts.org *.consolidatedebts.org *.dev.consolidatedebts.org *.ns1.consolidatedebts.org *.ns2.consolidatedebts.org *.sitemaps.consolidatedebts.org
*.660mail150.fincare.co fincare.co *.fincare.co *.m.fincare.co *.mail1.fincare.co *.mail2.fincare.co
fizkult-ura.site *.fizkult-ura.site
*.api.ggsoftasli.com *.app.ggsoftasli.com *.dev.ggsoftasli.com ggsoftasli.com *.ggsoftasli.com *.vpn.ggsoftasli.com *.z2ql7d.ggsoftasli.com
gnxtourworld.us *.gnxtourworld.us *.staging.gnxtourworld.us
hardware.lol *.hardware.lol *.www.hardware.lol
officehours.fm *.officehours.fm *.random.officehours.fm
*.0gnhy6.rtpb138.mom rtpb138.mom *.rtpb138.mom *.www.rtpb138.mom
stemedcaucus2.org *.stemedcaucus2.org *.ww38.stemedcaucus2.org
*.com.vechainfinance.com *.invest.vechainfinance.com *.investment.vechainfinance.com *.investplatform.vechainfinance.com vechainfinance.com *.vechainfinance.com
*.cpcalendars.vniis.org vniis.org *.vniis.org *.webdisk.vniis.org *.webmail.vniis.org *.www.vniis.org