76/100 SECURITY SCORE

Certificate Information

Subject
CN=rwjb.org
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 17, 2026
Valid Until
September 15, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D4:4A:6B:26:EC:43:D5:82:65:83:3E:E3:A6:EC:0C:FF:B5:28:BD:CC:04:E6:B7:CE:9D:99:09:ED:58:B2:62:92
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
gguttfeld.com *.gguttfeld.com *.cisco.gguttfeld.com *.excel.gguttfeld.com *.healthcare.gguttfeld.com *.idc.gguttfeld.com *.janus.gguttfeld.com

Other domains in certificate

*.38.competitivesudoku.com *.admin.competitivesudoku.com *.administration.competitivesudoku.com *.api.competitivesudoku.com *.app.competitivesudoku.com *.assets.competitivesudoku.com *.backup.competitivesudoku.com *.blog.competitivesudoku.com *.cloud.competitivesudoku.com competitivesudoku.com *.competitivesudoku.com *.crm.competitivesudoku.com *.demo.competitivesudoku.com *.dev.competitivesudoku.com *.forums.competitivesudoku.com *.help.competitivesudoku.com *.home.competitivesudoku.com *.hostmaster.competitivesudoku.com *.m.competitivesudoku.com *.mail.competitivesudoku.com *.members.competitivesudoku.com *.mnxehmembers.competitivesudoku.com *.mobile.competitivesudoku.com *.mta-sts.competitivesudoku.com *.new.competitivesudoku.com *.news.competitivesudoku.com *.prod.competitivesudoku.com *.rds.competitivesudoku.com *.remote.competitivesudoku.com *.shop.competitivesudoku.com *.staging.competitivesudoku.com *.support.competitivesudoku.com *.tickets.competitivesudoku.com *.user.competitivesudoku.com *.web.competitivesudoku.com *.webmail.competitivesudoku.com *.wiki.competitivesudoku.com *.ww38.competitivesudoku.com *.ww43.competitivesudoku.com *.www.competitivesudoku.com *.ywlfvremote.competitivesudoku.com *.zoutzbackup.competitivesudoku.com
*.blog.cvbrokers.com cvbrokers.com *.cvbrokers.com
*.blog.disave.com *.crm.disave.com disave.com *.disave.com *.my.disave.com
download.bet *.download.bet *.ftp.download.bet *.m.download.bet *.to.download.bet *.uat.download.bet *.ww38.download.bet
hpphotocreations.com *.hpphotocreations.com *.ww35.hpphotocreations.com
*.gfiq.hyuta.com *.gvy.hyuta.com *.hlqg.hyuta.com hyuta.com *.hyuta.com *.sgfxk.hyuta.com *.uwox.hyuta.com *.xjbom.hyuta.com
*.cpanel.manolabs.io *.docs.manolabs.io manolabs.io *.manolabs.io *.ww25.manolabs.io
*.activesync.rwjb.org *.dot.rwjb.org *.hostmaster.rwjb.org *.mail.rwjb.org *.mail1.rwjb.org *.mychart.rwjb.org rwjb.org *.rwjb.org *.sync.rwjb.org *.webmail.rwjb.org