76/100 SECURITY SCORE

Certificate Information

Subject
CN=aiforum.help
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 19, 2026
Valid Until
August 17, 2026 72 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:9B:DA:65:78:00:F2:3D:65:6E:98:EA:62:40:AB:FC:5E:78:75:05:8A:BB:A4:4D:1C:FB:B5:89:96:A8:6D:9D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ribeyed.com *.ribeyed.com *.0647fd82-2c34-4043-a824-f16ecd52bc93.ribeyed.com *.1d4c5fb8-9770-4b61-a4c2-436608ad8b78.ribeyed.com *.aibnqrd.ribeyed.com *.api.ribeyed.com *.app.ribeyed.com *.cd89ba13-56ad-4814-bb71-d4b8af7fb747.ribeyed.com *.demo.ribeyed.com *.m.ribeyed.com *.outlook.ribeyed.com *.qbcrlr.ribeyed.com *.rd.ribeyed.com *.rds.ribeyed.com *.rdweb.ribeyed.com *.remote.ribeyed.com *.test.ribeyed.com

Other domains in certificate

*.0c476b85-93c4-4469-a651-da1ff8a141cc.a2avat.com a2avat.com *.a2avat.com *.account.a2avat.com *.adm.a2avat.com *.admin.a2avat.com *.api.a2avat.com *.apkyerds.a2avat.com *.app.a2avat.com *.b02011f2-13a4-4dc5-8eb2-322d73615a3e.a2avat.com *.backend.a2avat.com *.beta.a2avat.com *.cloud.a2avat.com *.cms.a2avat.com *.crm.a2avat.com *.demo.a2avat.com *.dev.a2avat.com *.docs.a2avat.com *.external.a2avat.com *.hr.a2avat.com *.rd.a2avat.com *.rds.a2avat.com *.rdweb.a2avat.com *.remote.a2avat.com *.test.a2avat.com *.testing.a2avat.com *.vpn.a2avat.com
aiforum.help *.aiforum.help *.api.aiforum.help *.app.aiforum.help *.members.aiforum.help *.test.aiforum.help *.ww12.aiforum.help
*.7d4c2605-f29d-45fb-9ac7-18298bb24c3d.forphyros.info *.7ee1cdff-370c-4fd6-8b6d-c019a729663c.forphyros.info *.a.forphyros.info *.admin.forphyros.info *.administrator.forphyros.info *.api.forphyros.info *.app.forphyros.info *.assets.forphyros.info *.demo.forphyros.info *.dev.forphyros.info *.eaozdtest.forphyros.info forphyros.info *.forphyros.info *.members.forphyros.info *.mpcpdmembers.forphyros.info *.test.forphyros.info
*.beta.hawaiisecuritysystems.com *.crm.hawaiisecuritysystems.com *.demo.hawaiisecuritysystems.com hawaiisecuritysystems.com *.hawaiisecuritysystems.com *.remote.hawaiisecuritysystems.com *.webmail.hawaiisecuritysystems.com
*.7cdb3c11-f244-452e-bce7-2782e210acaa.tabtotap.lat *.admin.tabtotap.lat *.api.tabtotap.lat *.app.tabtotap.lat *.apps.tabtotap.lat *.assets.tabtotap.lat *.demo.tabtotap.lat *.dev.tabtotap.lat *.ea746849-0ad8-497a-aa56-53ccf15e1474.tabtotap.lat *.f2696440-19ab-431c-abfd-e041569ccc83.tabtotap.lat *.mta-sts.tabtotap.lat *.staging.tabtotap.lat tabtotap.lat *.tabtotap.lat *.test.tabtotap.lat *.webmail.tabtotap.lat