95/100 SECURITY SCORE

Certificate Information

Subject
CN=support.aiitsolutions.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 29, 2026
Valid Until
April 29, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
65:A3:13:6B:4C:E0:5B:8A:B2:BB:DB:10:B8:FC:CD:F6:1F:03:5D:85:1D:35:7B:09:CD:1A:C8:BD:92:85:C9:1E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=63072000;includeSubDomains
Content-Security-Policy
Basic
script-src; object-src; base-uri; +1 more
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
accelerometer=(), ambient-light-sensor=(), bluetooth=(), compute-pressure=(), document-domain=(), encrypted-media=(), gamepad=(), gyroscope=(), hid=(), magnetometer=(), midi=(), screen-wake-lock=(), serial=(), speaker-selection=(), usb=(), xr-spatial-tracking=()
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Improve CSP by adding more specific directives and removing 'unsafe-inline'

CAA Records (Certificate Authority Authorization)

CAA Records
Configured (Restricts certificate issuance)
Current Issuer
Authorized (Matches CAA policy)
Recommendations
  • Consider using critical flag (flags=128) for stricter CAA enforcement
  • You have authorized 4 CAs - consider limiting to only the CAs you actively use
  • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
  • Consider adding 'issuewild' records to control wildcard certificate issuance

Subject Alternative Names

88 domains
support.theheatingapp.com

Other domains in certificate

helpdesk.acitransport.com
actommonitoring.actom.co.za
support.aiitsolutions.com
support.amconnect.io
support.andeno.com
support.aviontech.me
support.avnayurveda.com
internal-support.basatapay.com
support.bbrtek.com
support.blogshobbyshop.com
support.bridgerphotonics.com
shlsupport.camares.com
soporte.capitalradio.mx
anphat.citek.vn desk.support.citek.vn friwo.citek.vn
www.class8trucktechs.com
support.collegepipe.com
nsr.lineup.com.tr
helpdesk.crispbytes-solution.com
sandbox.designalign.com
help.dokopoint.app
support.dxamarketing.com
buzondeorientacionalestudiante.uwiener.edu.pe
it-helpdesk.ehcuae.com
parts-sales.eirich-thailand.com
support.epostbook.com
support.financialserenity.co
support.forethreat.com
support.fortunecoins.com
desk.getmissioncontrols.com
support.getmyhomestead.com
queries.goalkeep.co.uk
support.group.goodness.com.au
support.hostgsmvoip.com
support.imaginethat-3d.com
support.interq.me
bakellsupport.jdidistribution.com
herowarranty.laundrylux.com
support.lewisit.io
support.linkedbusiness.eu
faq.maralto.com.br
client.mehrgeintegrations.com
support.movetubestudio.com
support.mstack360.com
support.mtsfl.com
examhelp.ncbex.org
support.nwnaturalwater.com
hello.osloairportapartments.com
soporte.pasosalexito.com
support.pjanke.com
support.plutolms.com
support.primedbilling.com
supportzapps.quantri40.vn
support.quickstart.business
support.default.quinstreet.com support.qrp-stage.quinstreet.com support.qrp-test.quinstreet.com
support.rainbowfashionsch.co.za
support.ralstoninst.com
support.randompos.com
support.retroglaze.co.nz
tech.richheritage.org
desk.rnasolutionsltd.com
support.saganfg.com
samp.sampsupport.com
support-intl-guestsolutions.shijigroup.com
help.silvercrossus.com
suporte.sistemapositivo.com.br
omni.skynest.co.za
support.smartlifestyleaustralia.com.au
support.smartpbx.io
support.socicraft.com
soporte.sociusdigital.com.mx
support.southernprideoftexas.com
support.stanms.com
care.swvl.com
support.tekkietec.com
desk.tgju.org
support.thedoodleproject.com
help.treadall.com
support.trutrademail.io
ticket.ucingo.com.au
support.ufunding.io
support.vetbooks.com
support.idc.vnptit.vn
suporte.webdefense.com.br