Open
Cached
·
just now
86/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=status-turb-aware.iata.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 22, 2026
Valid Until
July 21, 2026
76 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:DC:4E:D2:6B:35:86:38:D2:2C:08:76:B9:F6:0D:6B:EE:6B:07:A6:6D:7A:8E:55:92:74:B5:E3:43:BF:D3:66
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=259200
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
29 domains
status.uipath.com
status.24sevenoffice.com
status.4csonline.com
status.alaska.edu
status.athlinks.com
status.axway.com
status.basiq.io
status.my.clicktravel.com
status.displayr.com
status.ext-sandbox.fourthline.com
status.fraudprotectionnetwork.com
status.globalmeet.com
status.grafeno.digital
status.hull.io
status-turb-aware.iata.org
status.influitive.com
status.liveworld.com
status.lotame.com
status.marketplacer.com
status.meridianlink.com
status.millenvpn.jp
status.register365.com
status.simplyhosting.cloud
status.sparcmediahub.com
status.tcplusondemand.com
statuspage.tcplusondemand.com
status.tomis.tech
status.unless.com
status.vexxhost.com
Other domains in certificate