95/100 SECURITY SCORE

Certificate Information

Subject
CN=marketing.allostasis.io
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 25, 2026
Valid Until
April 25, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9A:CA:79:35:63:53:CD:B9:A1:39:58:A5:A4:20:AB:C0:33:DF:93:50:A3:A8:E3:CD:AD:01:B5:C5:CA:23:31:C8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=63072000;includeSubDomains
Content-Security-Policy
Basic
script-src; object-src; base-uri; +1 more
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
accelerometer=(), ambient-light-sensor=(), bluetooth=(), compute-pressure=(), document-domain=(), encrypted-media=(), gamepad=(), gyroscope=(), hid=(), magnetometer=(), midi=(), screen-wake-lock=(), serial=(), speaker-selection=(), usb=(), xr-spatial-tracking=()
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Improve CSP by adding more specific directives and removing 'unsafe-inline'

CAA Records (Certificate Authority Authorization)

CAA Records
Configured (Restricts certificate issuance)
Current Issuer
Authorized (Matches CAA policy)
Authorized CAs
Recommendations
  • Consider using critical flag (flags=128) for stricter CAA enforcement
  • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
  • Consider adding 'issuewild' records to control wildcard certificate issuance

Subject Alternative Names

84 domains
support.veracitytrustnetwork.com

Other domains in certificate

customer-service.24-sieben.com
nhood.5thstreet.co.uk
tu-nuernberg.actago.de
support.adopus.no
support.aegis.nl
it.allostasis.io marketing.allostasis.io
support.alqubit.org
suport.arqbcn.cat
support.avivoroblox.com
support.bitservices.cloud
support.blastness.com
support.bloomagency.ch
assistenza.blusrl.com
help.boundplugins.com
desk.ccaa.immo
support.cgserveis.com
support.clisecure.com
support.cloudadvies.nl
support.cloudwize.com
support.coffeenetworks.eu
desk.colead.link
servicedesk.communicate.technology
pomoc.deployflow.co
assistenza-it.edotto.com
externalsupport.energy-solutions.co.uk
support.ext.dev
service.forzalaqua.nl
support.freelancegeek.co.uk
customerservices.globalamerican.us
solutions.groupe-beaumanoir.com support-partnersb2b.groupe-beaumanoir.com
support.growww-app.com
support.h-farm.com
desk.hamidmoghaddasi.com
aq.hgem.com itsupport.hgem.com
support.hiddenprofitsmarketing.com
ayuda.imagina-energia.es
service.immobilie.nrw
desk.infowave.gr help.infowave.gr helpdesk.infowave.gr support.infowave.gr
desk.infrashift.co.uk
support.intellivend.de
informatica.irsearaba.eus
support-tma.it-mitra.com
desk.iwave.gr help.iwave.gr helpdesk.iwave.gr support.iwave.gr
support.kitc.ch
support.lngcoe.com
helpdesk.mama-telecom.nl
desk.medplatform.org
essent.mijnfleetkennis.nl
portaladmingrup.mytown.ro portaladminretea.mytown.ro portaladminreteadate.mytown.ro portalasociatie.mytown.ro portalmoderatori.mytown.ro portaloperatoriprincipali.mytown.ro portaloperatorisecundari.mytown.ro portalvalidatori.mytown.ro portalvoluntari.mytown.ro
mdr.netstream.nl support.netstream.nl
support.nimbledigital.co.uk
support.orangecubes.nl
marketing.parsjahd.com
manageditsupport.pinnacle-online.com sage200support.pinnacle-online.com sageintacctsupport.pinnacle-online.com
aiuto.primor.eu
support-axamx.qantev.ai support-bgla.qantev.ai
it-support.reducate.com
assistenza.robadev.it
support.tmetric.com
support.townout-europe.com
desk.zapgo.network
support.zeentek-solutions.fr