76/100 SECURITY SCORE

Certificate Information

Subject
CN=healtmalay.info
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 01, 2026
Valid Until
July 30, 2026 81 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A2:5B:07:1E:E4:68:AE:A0:6E:9D:9B:93:7A:DF:39:1D:9F:9C:C3:62:B4:73:19:BB:8D:E9:36:54:26:8C:AC:8D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
katedral.it *.katedral.it *.api.katedral.it *.remote.katedral.it

Other domains in certificate

232studios.com *.232studios.com *.4descapes.232studios.com *.adeptly.232studios.com *.connect.232studios.com *.exchange.232studios.com *.hostmaster.232studios.com *.lornaglenister.232studios.com *.mail.232studios.com *.seriouslearninggames.232studios.com
fairlandgroup.mx *.fairlandgroup.mx *.wildcard.fairlandgroup.mx
healtmalay.info *.healtmalay.info
*.com.olimpic.co olimpic.co *.olimpic.co *.org.olimpic.co *.xyz.olimpic.co
sfasciacarrozze.com *.sfasciacarrozze.com *.webmail.sfasciacarrozze.com
*.login.simpehuman.com simpehuman.com *.simpehuman.com
*.6978ee90-06cf-43e3-a626-1dc03a807a2b.successfulpsyche.com *.a.successfulpsyche.com *.a128eb36-f590-4707-a9df-16b93af6dcef.successfulpsyche.com *.app.successfulpsyche.com *.apps.successfulpsyche.com *.b9a53590-0455-431d-a652-3b3ba37add5a.successfulpsyche.com *.blog.successfulpsyche.com *.cpanel.successfulpsyche.com *.cpcalendars.successfulpsyche.com *.cpcontacts.successfulpsyche.com *.demo.successfulpsyche.com *.dev.successfulpsyche.com *.f6cdfb8b-5ed3-4b55-8509-442eaed675c2.successfulpsyche.com *.mail.successfulpsyche.com *.mdbrwogmzlm.successfulpsyche.com *.staging.successfulpsyche.com successfulpsyche.com *.successfulpsyche.com *.vpn.successfulpsyche.com *.webdisk.successfulpsyche.com *.webmail.successfulpsyche.com *.www.successfulpsyche.com *.xthvyapp.successfulpsyche.com
*.559dc116-8bec-4ced-aef3-c45a312596c3.yarapelo.com *.86c48a96-147e-45ed-8fbd-348060a9557f.yarapelo.com *.admin.yarapelo.com *.api.yarapelo.com *.app.yarapelo.com *.backup.yarapelo.com *.beta.yarapelo.com *.bmacxsng.yarapelo.com *.dashboard.yarapelo.com *.demo.yarapelo.com *.dev.yarapelo.com *.docs.yarapelo.com *.external.yarapelo.com *.gitlab.yarapelo.com *.intranet.yarapelo.com *.mail.yarapelo.com *.mailer.yarapelo.com *.marketing.yarapelo.com *.my.yarapelo.com *.new.yarapelo.com *.portal.yarapelo.com *.public.yarapelo.com *.qa.yarapelo.com *.remote.yarapelo.com *.secure.yarapelo.com *.sharepoint.yarapelo.com *.shop.yarapelo.com *.staging.yarapelo.com *.stg.yarapelo.com *.uat.yarapelo.com *.ubecjdemo.yarapelo.com *.ujokrjje.yarapelo.com *.v2.yarapelo.com *.vpn.yarapelo.com *.web.yarapelo.com yarapelo.com *.yarapelo.com