Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=faridabadgold.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B3:49:17:FA:AB:1D:AC:42:C9:E4:85:72:9E:70:B0:62:72:8F:E1:FB:90:24:86:59:9C:8C:A5:BB:D0:64:BE:9F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
tikona.com *.tikona.com *.access.tikona.com *.acs.tikona.com *.selfhelp.tikona.com

Other domains in certificate

accuratemasonry.com *.accuratemasonry.com *.asa.accuratemasonry.com *.ww1.accuratemasonry.com
aglioolio.com *.aglioolio.com *.mail.aglioolio.com
*.admin.bloomeramg.co bloomeramg.co *.bloomeramg.co
buktiwd.xyz *.buktiwd.xyz *.tm.buktiwd.xyz
*.01.citizenstricountybank.com *.16.citizenstricountybank.com *.america.citizenstricountybank.com *.atlas.citizenstricountybank.com *.black.citizenstricountybank.com *.blog.citizenstricountybank.com *.broadcast.citizenstricountybank.com citizenstricountybank.com *.citizenstricountybank.com *.columbus.citizenstricountybank.com *.comics.citizenstricountybank.com *.demo.citizenstricountybank.com *.doctor.citizenstricountybank.com *.domreg.citizenstricountybank.com *.gallery.citizenstricountybank.com *.help.citizenstricountybank.com *.hostmaster.citizenstricountybank.com *.hotspot.citizenstricountybank.com *.impact.citizenstricountybank.com *.iota.citizenstricountybank.com *.iutnb.citizenstricountybank.com *.job.citizenstricountybank.com *.mxb.citizenstricountybank.com *.news.citizenstricountybank.com *.node.citizenstricountybank.com *.pf.citizenstricountybank.com *.port.citizenstricountybank.com *.portal.citizenstricountybank.com *.portaltest.citizenstricountybank.com *.russian.citizenstricountybank.com *.sapphire.citizenstricountybank.com *.sauron.citizenstricountybank.com *.server8.citizenstricountybank.com *.sip1.citizenstricountybank.com *.sslvpn.citizenstricountybank.com *.v2.citizenstricountybank.com *.vpn.citizenstricountybank.com *.vpn1.citizenstricountybank.com *.watch.citizenstricountybank.com *.ww38.citizenstricountybank.com *.www.citizenstricountybank.com *.yoshi.citizenstricountybank.com *.zabbix.citizenstricountybank.com
faridabadgold.com *.faridabadgold.com
*.apps.karavil.com karavil.com *.karavil.com *.owa.karavil.com
*.blog.kilimanoor.com *.forums.kilimanoor.com kilimanoor.com *.kilimanoor.com *.test.kilimanoor.com
*.cisco.tranbarger.com *.ex02.tranbarger.com tranbarger.com *.tranbarger.com
*.88.vedase.com *.connectvpn.vedase.com *.cpanel22.vedase.com *.m.vedase.com *.owa.vedase.com *.p03.vedase.com *.panel.vedase.com *.remote.vedase.com *.test.vedase.com vedase.com *.vedase.com
*.sitemaps.victoriakennedy.com victoriakennedy.com *.victoriakennedy.com