Open
Cached
·
21m ago
76/100
SECURITY SCORE
Certificate Information
Subject
CN=dium-corp.fr
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 01, 2025
Valid Until
March 01, 2026
43 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:4A:B9:62:C6:AF:5F:CC:96:44:54:64:BD:10:C9:05:00:DE:1B:26:B5:D1:28:8B:76:39:1C:7F:7C:7F:F5:63
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
pgppu.com
*.pgppu.com
afreaksenseworld.com
*.afreaksenseworld.com
aiosaka264341.icu
*.aiosaka264341.icu
avvocatoliviarossi.online
*.avvocatoliviarossi.online
*.reatidacodicerosso.avvocatoliviarossi.online
*.reatisocietari.avvocatoliviarossi.online
*.autodiscover.beam.solutions
beam.solutions
*.beam.solutions
*.mail.beam.solutions
*.mx.beam.solutions
*.random.beam.solutions
*.webmail.beam.solutions
*.www.beam.solutions
caravewla.club
*.caravewla.club
*.ww25.caravewla.club
*.beta.dium-corp.fr
*.client-cloud.dium-corp.fr
*.cloud.dium-corp.fr
*.discord.dium-corp.fr
dium-corp.fr
*.dium-corp.fr
*.dium-craft.dium-corp.fr
*.diumstream.dium-corp.fr
*.funlife.dium-corp.fr
*.gmail.dium-corp.fr
*.manager.dium-corp.fr
*.pma.dium-corp.fr
*.pterobot.dium-corp.fr
*.robloxinfo.dium-corp.fr
*.update.dium-corp.fr
*.webhook.dium-corp.fr
*.cpanel.drvodelja.info
drvodelja.info
*.drvodelja.info
*.webdisk.drvodelja.info
*.webmail.drvodelja.info
duckthelair.com
*.duckthelair.com
employernet.net
*.employernet.net
fastwin.mobi
*.fastwin.mobi
*.ww25.fastwin.mobi
disability.firm.in
*.disability.firm.in
justworks.site
*.justworks.site
maomicloud.com
*.maomicloud.com
*.random.maomicloud.com
*.ww25.maomicloud.com
*.mx.natalia.store
natalia.store
*.natalia.store
neonime.co
*.neonime.co
sekainomosque.com
*.sekainomosque.com
sexvietsubs1.com
*.sexvietsubs1.com
skriibl.io
*.skriibl.io
*.ww25.skriibl.io
*.ns.subgiare3s.site
subgiare3s.site
*.subgiare3s.site
*.random.teslaotherstuff.store
teslaotherstuff.store
*.teslaotherstuff.store
*.cpanel.travelisurance.com
travelisurance.com
*.travelisurance.com
*.webdisk.travelisurance.com
us-qsinp.us
*.us-qsinp.us
*.ww25.us-qsinp.us
vail.ca
*.vail.ca
webcharmers.co
*.webcharmers.co
what-a-wonderful.world
*.what-a-wonderful.world
*.ww25.what-a-wonderful.world
Other domains in certificate