76/100 SECURITY SCORE

Certificate Information

Subject
CN=paidy.co
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
53:EA:B2:2C:75:7F:62:B2:72:A7:2E:6F:3A:13:8C:04:36:7B:94:ED:1A:F0:50:16:0A:DD:25:09:E7:DE:46:C7
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
rmdlr.tech *.rmdlr.tech *.aging.rmdlr.tech *.api.rmdlr.tech *.backup.rmdlr.tech *.d3de9a98-6980-41d4-bdf3-d36d22917ffb.rmdlr.tech *.dev.rmdlr.tech *.docs.rmdlr.tech *.external.rmdlr.tech *.hare.rmdlr.tech *.harepoint.rmdlr.tech *.intranet.rmdlr.tech *.my.rmdlr.tech *.portal.rmdlr.tech *.public.rmdlr.tech *.ranet.rmdlr.tech *.share.rmdlr.tech *.sharepoint.rmdlr.tech *.staging.rmdlr.tech *.uat.rmdlr.tech *.www.rmdlr.tech

Other domains in certificate

44bo.com *.44bo.com *.router.44bo.com *.vpn2.44bo.com *.ww1.44bo.com
*.11.creepware.com *.admin.creepware.com *.api.creepware.com *.backup.creepware.com *.beta.creepware.com creepware.com *.creepware.com *.crm.creepware.com *.demo.creepware.com *.dev.creepware.com *.forum.creepware.com *.help.creepware.com *.hitfarm.creepware.com *.home.creepware.com *.hostmaster.creepware.com *.intranet.creepware.com *.m.creepware.com *.mail10.creepware.com *.mbox.creepware.com *.mi.creepware.com *.new.creepware.com *.old.creepware.com *.portal.creepware.com *.preview.creepware.com *.shop.creepware.com *.temp.creepware.com *.test.creepware.com *.vpn.creepware.com *.wap.creepware.com *.web.creepware.com *.www.creepware.com
*.hostmaster.mountaincabins.org *.m.mountaincabins.org mountaincabins.org *.mountaincabins.org
*.32.paidy.co *.7854719t.paidy.co *.admin.paidy.co *.analytic.paidy.co *.analytics.paidy.co *.beta.paidy.co *.co.paidy.co *.customer-support.paidy.co *.dashboard.paidy.co *.data.paidy.co *.demo.paidy.co *.dev.paidy.co *.development.paidy.co *.hostmaster.paidy.co *.insight.paidy.co *.merchant.paidy.co *.my.paidy.co paidy.co *.paidy.co *.preprod.paidy.co *.preview.paidy.co *.prod.paidy.co *.production.paidy.co *.ptr1999.paidy.co *.ptr919.paidy.co *.sandbox.paidy.co *.superset.paidy.co *.test.paidy.co *.ww25.paidy.co