76/100 SECURITY SCORE

Certificate Information

Subject
CN=americanhomepatient.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
48:21:58:46:20:B5:B7:66:E8:1C:AA:C3:DC:32:57:F1:CA:26:3D:ED:AB:29:E5:FE:91:7C:3B:87:24:35:D9:B4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
valgioie.com *.valgioie.com *.bbs.valgioie.com *.demo.valgioie.com

Other domains in certificate

allterrainforklift.net.au *.allterrainforklift.net.au *.ww38.allterrainforklift.net.au
americanhomepatient.com *.americanhomepatient.com *.ww16.americanhomepatient.com *.ww2.americanhomepatient.com *.ww38.americanhomepatient.com
asendfcu.org *.asendfcu.org
*.blog.buidasign.com buidasign.com *.buidasign.com *.exp.buidasign.com *.qa1.buidasign.com *.random.buidasign.com *.wildcard.buidasign.com
davidymbernon.com *.davidymbernon.com *.ww25.davidymbernon.com
deceive.com.au *.deceive.com.au
iecglobal.au *.iecglobal.au *.ww25.iecglobal.au
*.admin.inruilen.com *.api.inruilen.com *.bbs.inruilen.com inruilen.com *.inruilen.com *.m.inruilen.com *.mail.inruilen.com *.ww1.inruilen.com *.ww16.inruilen.com *.ww17.inruilen.com *.ww25.inruilen.com
*.cache.jrub.com *.comune.jrub.com jrub.com *.jrub.com *.k.jrub.com *.williams-pick.jrub.com *.ww25.jrub.com
mylifeplan.com *.mylifeplan.com *.ww11.mylifeplan.com
ocrave.com *.ocrave.com *.random.ocrave.com
*.mx1.oivz.com oivz.com *.oivz.com *.ww38.oivz.com
rapidcapture.co.nz *.rapidcapture.co.nz *.ww38.rapidcapture.co.nz
*.comune.theforum.com.au *.fld.theforum.com.au *.opac.theforum.com.au *.random.theforum.com.au theforum.com.au *.theforum.com.au *.www.theforum.com.au
thinkjobs.com.au *.thinkjobs.com.au
weathchannel.com *.weathchannel.com
xn--drucker-zubeher-ltb.de *.xn--drucker-zubeher-ltb.de
*.apps.yachin.com *.cicd.yachin.com *.hm.yachin.com *.jobs.yachin.com *.law.yachin.com *.pipeline.yachin.com *.project.yachin.com *.proxy.yachin.com *.reg.yachin.com *.sport.yachin.com *.static.yachin.com *.survey.yachin.com *.web.yachin.com *.ww25.yachin.com *.ww38.yachin.com yachin.com *.yachin.com