Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=iowafield.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 15, 2026
Valid Until
August 13, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:E9:F8:52:79:5E:A3:05:61:05:E8:9B:44:66:B6:68:94:F9:F2:83:7B:D4:3D:1C:90:30:6F:7B:A1:A6:A4:D5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
abodebet.com
*.abodebet.com
*.cloud.abodebet.com
*.m.abodebet.com
*.rd.abodebet.com
*.rds.abodebet.com
*.rdweb.abodebet.com
*.sitemap.abodebet.com
*.wildcard.abodebet.com
58005800.cn
*.58005800.cn
*.m.58005800.cn
aidefinitions.com
*.aidefinitions.com
*.m.aidefinitions.com
*.www.aidefinitions.com
arizonahotline.com
*.arizonahotline.com
*.m.arizonahotline.com
*.analytic.ary88.com
ary88.com
*.ary88.com
*.blog.ary88.com
*.cpanel.ary88.com
*.m.ary88.com
*.www.ary88.com
*.apps.canuckhosting.com
canuckhosting.com
*.canuckhosting.com
*.cloud.canuckhosting.com
*.gateway.canuckhosting.com
*.m.canuckhosting.com
*.rd.canuckhosting.com
*.rds.canuckhosting.com
*.rdweb.canuckhosting.com
*.remote.canuckhosting.com
*.server.canuckhosting.com
*.server1.canuckhosting.com
*.sitemaps.canuckhosting.com
*.ssl.canuckhosting.com
*.sslvpn.canuckhosting.com
*.vpn.canuckhosting.com
*.webvpn.canuckhosting.com
*.wildcard.canuckhosting.com
*.4bfvy4.futureinsuranceservices.com
futureinsuranceservices.com
*.futureinsuranceservices.com
*.m.futureinsuranceservices.com
gooddealflooring.com
*.gooddealflooring.com
*.m.gooddealflooring.com
*.app.hailrepair.tv
*.demo.hailrepair.tv
*.dev.hailrepair.tv
hailrepair.tv
*.hailrepair.tv
*.m.hailrepair.tv
*.new.hailrepair.tv
*.remote.hailrepair.tv
icmtoken.com
*.icmtoken.com
*.m.icmtoken.com
incoming.photos
*.incoming.photos
*.m.incoming.photos
*.sitemap.incoming.photos
*.web.incoming.photos
iowafield.com
*.iowafield.com
*.m.iowafield.com
*.hostmaster.itblog.me
itblog.me
*.itblog.me
*.m.itblog.me
*.website.itblog.me
*.intelligence.johnlonsdale.com
johnlonsdale.com
*.johnlonsdale.com
*.m.johnlonsdale.com
*.demo.smarthphoto.be
*.mqklns1.smarthphoto.be
*.notexistsww2.smarthphoto.be
*.s1.smarthphoto.be
*.service.smarthphoto.be
smarthphoto.be
*.smarthphoto.be
*.test.smarthphoto.be
*.www.smarthphoto.be
Other domains in certificate