Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=scotia-connect.business
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 07, 2026
Valid Until
September 05, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
82:DC:D7:34:2A:1A:0C:4B:97:33:E2:98:87:76:45:32:2C:A4:8B:AB:C1:CA:D8:86:41:A5:8C:7D:3B:53:2A:80
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
67 domains
sanjak.com
*.sanjak.com
*.email.sanjak.com
*.hostmaster.sanjak.com
*.https.sanjak.com
*.mail.sanjak.com
*.mail1.sanjak.com
*.portal.sanjak.com
*.remote.sanjak.com
*.remote2.sanjak.com
*.server.sanjak.com
*.sitemap.sanjak.com
*.ssl.sanjak.com
*.sslvpn.sanjak.com
*.sslvpn2.sanjak.com
*.sslvpn3.sanjak.com
*.test.sanjak.com
*.vpn.sanjak.com
*.vpn2.sanjak.com
*.wildcard.sanjak.com
*.ww.sanjak.com
*.ww1.sanjak.com
*.ww11.sanjak.com
*.ww16.sanjak.com
*.ww17.sanjak.com
*.ww25.sanjak.com
*.www.sanjak.com
alpha.cm
*.alpha.cm
*.cpanel.alpha.cm
*.cpcontacts.alpha.cm
*.iad.alpha.cm
*.mail.alpha.cm
*.new.alpha.cm
*.okx.alpha.cm
*.portal.alpha.cm
*.ww16.alpha.cm
*.ww25.alpha.cm
antjem.com
*.antjem.com
*.ww25.antjem.com
fffoficial.com
*.fffoficial.com
scotia-connect.business
*.scotia-connect.business
*.admin.tyros.it
*.cloud.tyros.it
*.connect.tyros.it
*.correo.tyros.it
*.dashboard.tyros.it
*.ex02.tyros.it
*.exchange.tyros.it
*.hostmaster.tyros.it
*.imap.tyros.it
*.mail.tyros.it
*.metrics.tyros.it
*.mx.tyros.it
*.outlook.tyros.it
*.owa.tyros.it
*.pop3.tyros.it
*.smtp.tyros.it
*.studentsvpn.tyros.it
*.supersets.tyros.it
tyros.it
*.tyros.it
*.visual.tyros.it
*.www.tyros.it
Other domains in certificate