Open
Cached
·
just now
86/100
SECURITY SCORE
Certificate Information
Subject
CN=status.aldebaran.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
79 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
76:E5:8A:5F:2C:57:48:B1:1A:6E:B6:40:4E:E9:FA:4F:E4:70:FF:03:56:1E:54:45:C6:24:CF:EF:85:D3:A3:14
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=259200
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
37 domains
status.system1.com
status.aldebaran.com
status.analytix360.cloud
status.apeagers.io
status.badgerbookings.com
status.blueskybooking.com
status.crumbl.com
status.databp.com
status.digalert.org
status.drlogic.com
status.durianpay.id
status.engineyard.com
status.firstdata.com
status.fortified.io
statuspage.ext-development.fourthline.com
status.geopartner.dk
status2.incountry.com
status.localist.com
status.mobiwm.com
status.namiml.com
status.orum.com
status.pontomais.com.br
status.ptc.com
status.qsrpolarisdev.net
status.richmondlp.com
status.ringba.com
status.volvo.sharpcloud.com
status.steadybit.io
status.suralink.com
status.surveydynamix.com
status.truelearn.net
status.trustcentre.co.nz
status.tryfirewall.com
status.uniify.io
status.unitedplanners.com
status.wefact.nl
status.xrpl-labs.com
Other domains in certificate