Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nahec.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 12, 2026
Valid Until
August 10, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A0:D6:6C:E3:A9:00:57:DC:27:0D:13:F8:FB:99:DF:05:98:04:6F:54:19:70:67:1D:A7:F1:C6:39:63:34:0A:09
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
tiny11.pro
*.tiny11.pro
*.32.tiny11.pro
1997jys.top
*.1997jys.top
*.3ugcn.1997jys.top
*.60t9v.1997jys.top
*.95vhx.1997jys.top
*.f5nzxp.1997jys.top
*.he00g.1997jys.top
*.igqlc.1997jys.top
*.jxc88.1997jys.top
*.l7nqb.1997jys.top
*.q2s8t.1997jys.top
*.u46cv.1997jys.top
*.vizaseq.1997jys.top
*.wsct4.1997jys.top
*.wslq2.1997jys.top
*.xrqcg.1997jys.top
*.z3dl1.1997jys.top
britishaieways.com
*.britishaieways.com
*.holidays.britishaieways.com
coastalatelier.com
*.coastalatelier.com
*.www.coastalatelier.com
*.cpcalendars.cuantocuesta.pro
cuantocuesta.pro
*.cuantocuesta.pro
*.mail.mywriting.co.uk
mywriting.co.uk
*.mywriting.co.uk
*.autodiscover.nahec.org
*.co.nahec.org
*.cqbdri.nahec.org
*.ex2013.nahec.org
*.hostmaster.nahec.org
*.insun.nahec.org
*.m.nahec.org
*.mail.nahec.org
*.mtn.nahec.org
nahec.org
*.nahec.org
*.owa.nahec.org
*.random.nahec.org
*.rds.nahec.org
*.rdweb.nahec.org
*.ryanbffffffffffff.nahec.org
*.secure.nahec.org
*.sitemap.nahec.org
*.sitemaps.nahec.org
*.virtualapps.nahec.org
*.webmail.nahec.org
*.work.nahec.org
*.ww1.nahec.org
*.ww12.nahec.org
*.xyzh.nahec.org
*.8c82c048-fc79-487c-a85b-6d5719835e86.pflegeratgeber.net
*.97386454-3562-4dc7-a237-42e32d7f039b.pflegeratgeber.net
*.api.pflegeratgeber.net
*.app.pflegeratgeber.net
*.backup.pflegeratgeber.net
*.blog.pflegeratgeber.net
*.cloud.pflegeratgeber.net
*.dev.pflegeratgeber.net
*.ftp.pflegeratgeber.net
*.izliim.pflegeratgeber.net
*.loja.pflegeratgeber.net
*.m.pflegeratgeber.net
*.media.pflegeratgeber.net
*.mta-sts.pflegeratgeber.net
*.new.pflegeratgeber.net
pflegeratgeber.net
*.pflegeratgeber.net
*.rd.pflegeratgeber.net
*.rds.pflegeratgeber.net
*.rdweb.pflegeratgeber.net
*.remote.pflegeratgeber.net
*.staging.pflegeratgeber.net
*.uat.pflegeratgeber.net
*.wp.pflegeratgeber.net
*.ymxpjblog.pflegeratgeber.net
qianoofficial.com
*.qianoofficial.com
*.cpcontacts.sbobet.cheap
sbobet.cheap
*.sbobet.cheap
*.img1-fg.wacmo.com
wacmo.com
*.wacmo.com
Other domains in certificate