Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=stepsisazra.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 26, 2026
Valid Until
August 24, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:72:05:14:EB:63:A2:1D:EA:4D:87:52:42:6B:7A:6E:43:DE:79:8B:8C:87:A7:39:E7:0A:EA:04:CD:13:66:49
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
adonl.com *.adonl.com *.admin.adonl.com *.api.adonl.com *.app.adonl.com *.apps.adonl.com *.arfgb1.adonl.com *.assets.adonl.com *.backup.adonl.com *.blog.adonl.com *.client.adonl.com *.connectvpn.adonl.com *.dashboard.adonl.com *.demo.adonl.com *.desktop.adonl.com *.dev.adonl.com *.gateway.adonl.com *.gydofintranet.adonl.com *.hecinqvqb.adonl.com *.intranet.adonl.com *.ivhbxmember.adonl.com *.login.adonl.com *.mail.adonl.com *.mailer.adonl.com *.marketing.adonl.com *.member.adonl.com *.mobile.adonl.com *.mta-sts.adonl.com *.office.adonl.com *.portal.adonl.com *.pwtofnqc.adonl.com *.qjxzkrd.adonl.com *.rd.adonl.com *.rdp.adonl.com *.rds.adonl.com *.rdweb.adonl.com *.remote.adonl.com *.remoteaccess.adonl.com *.secure.adonl.com *.secureaccess.adonl.com *.sslvpn.adonl.com *.staging.adonl.com *.testing.adonl.com *.ts.adonl.com *.uat.adonl.com *.v1.adonl.com *.vpn.adonl.com *.vpn2.adonl.com *.web.adonl.com *.webconnect.adonl.com *.webvpn.adonl.com *.ycoxsb.adonl.com

Other domains in certificate

*.admin.ggoglemaps.de *.agent.ggoglemaps.de *.api.ggoglemaps.de *.app.ggoglemaps.de *.assets.ggoglemaps.de *.backup.ggoglemaps.de *.beta.ggoglemaps.de *.customer.ggoglemaps.de *.dashboard.ggoglemaps.de *.dev1.ggoglemaps.de ggoglemaps.de *.ggoglemaps.de *.insight.ggoglemaps.de *.intranet.ggoglemaps.de *.kundenportal.ggoglemaps.de *.m.ggoglemaps.de *.mail.ggoglemaps.de *.marketing.ggoglemaps.de *.my.ggoglemaps.de *.partner.ggoglemaps.de *.portal.ggoglemaps.de *.qa.ggoglemaps.de *.secure.ggoglemaps.de *.shop.ggoglemaps.de *.store.ggoglemaps.de *.user.ggoglemaps.de *.users.ggoglemaps.de *.v1.ggoglemaps.de *.vpn.ggoglemaps.de *.webmail.ggoglemaps.de *.www.ggoglemaps.de
*.iqgupmcy.mxwhp.biz *.mail.mxwhp.biz mxwhp.biz *.mxwhp.biz *.stg.mxwhp.biz
stepsisazra.com *.stepsisazra.com