76/100 SECURITY SCORE

Certificate Information

Subject
CN=imaginescope.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026 77 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:FB:69:45:E2:06:19:9C:AB:5A:BA:2A:C2:90:8E:98:6B:6F:59:EC:C2:71:5C:F3:B0:74:1B:13:2E:28:41:D0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
serras.com *.serras.com *.connectvpn.serras.com *.gateway.serras.com *.office.serras.com *.remoteaccess.serras.com *.web.serras.com *.webconnect.serras.com *.webvpn.serras.com

Other domains in certificate

*.admin.bollardcoversusa.com bollardcoversusa.com *.bollardcoversusa.com
*.admin.imaginescope.com *.app.imaginescope.com *.blog.imaginescope.com *.cloud.imaginescope.com *.gateway.imaginescope.com *.iki.imaginescope.com imaginescope.com *.imaginescope.com *.login.imaginescope.com *.mail.imaginescope.com *.new.imaginescope.com *.rds.imaginescope.com *.web.imaginescope.com *.webmail.imaginescope.com *.webvpn.imaginescope.com
*.demo.linkvaotop88.app linkvaotop88.app *.linkvaotop88.app *.preprod.linkvaotop88.app
*.0tri.shzhaozhan.cn *.0y6.shzhaozhan.cn *.2s6.shzhaozhan.cn *.2t3n.shzhaozhan.cn *.32.shzhaozhan.cn *.333plz.shzhaozhan.cn *.3r8dld.shzhaozhan.cn *.3voiqg.shzhaozhan.cn *.5dx.shzhaozhan.cn *.6fu.shzhaozhan.cn *.8z2d.shzhaozhan.cn *.9y7ux.shzhaozhan.cn *.b10w.shzhaozhan.cn *.b9a.shzhaozhan.cn *.ban4u.shzhaozhan.cn *.cbjo.shzhaozhan.cn *.di3.shzhaozhan.cn *.em4sly.shzhaozhan.cn *.gi.shzhaozhan.cn *.guz9o.shzhaozhan.cn *.gxi.shzhaozhan.cn *.gy.shzhaozhan.cn *.h86wbp.shzhaozhan.cn *.heco.shzhaozhan.cn *.iwq.shzhaozhan.cn *.jr0n.shzhaozhan.cn *.kf9.shzhaozhan.cn *.kvj8z.shzhaozhan.cn *.m4sly.shzhaozhan.cn *.mdl.shzhaozhan.cn *.n3xgc.shzhaozhan.cn *.noi9c.shzhaozhan.cn *.ntkf9.shzhaozhan.cn *.nx9ip4.shzhaozhan.cn *.ocbjo.shzhaozhan.cn *.oquucc.shzhaozhan.cn *.p0b4.shzhaozhan.cn *.pof2.shzhaozhan.cn *.q.shzhaozhan.cn *.qb5.shzhaozhan.cn *.qkdz4.shzhaozhan.cn *.qu6.shzhaozhan.cn *.quucc.shzhaozhan.cn *.qybtd.shzhaozhan.cn *.rd5hm.shzhaozhan.cn *.rr47.shzhaozhan.cn shzhaozhan.cn *.shzhaozhan.cn *.swjh1.shzhaozhan.cn *.trd5w5.shzhaozhan.cn *.wap.shzhaozhan.cn *.wd.shzhaozhan.cn *.wp.shzhaozhan.cn *.wq.shzhaozhan.cn *.xl5nm.shzhaozhan.cn *.z9.shzhaozhan.cn *.zew.shzhaozhan.cn *.zmkwli.shzhaozhan.cn *.zt4s.shzhaozhan.cn