Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=gomedicaresupplementinsurance.co
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 09, 2026
Valid Until
May 10, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D8:A9:BE:AE:A2:2A:F4:33:1E:79:AA:68:94:D2:5A:44:89:50:AC:49:52:45:32:1C:14:EE:17:97:4C:D7:16:4E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
tphnetwork.com
*.tphnetwork.com
301garage.com
*.301garage.com
*.2mke.7e7.com
7e7.com
*.7e7.com
*.analyze.7e7.com
*.l0f7.7e7.com
*.reporting.7e7.com
834aa.com
*.834aa.com
airmiles.com.au
*.airmiles.com.au
*.random.airmiles.com.au
*.wildcard.airmiles.com.au
atituderedes.com.br
*.atituderedes.com.br
bookingfaxnavia.com
*.bookingfaxnavia.com
btc2228.com
*.btc2228.com
*.admin.cagna.com
*.analytics.cagna.com
*.api.cagna.com
*.assets.cagna.com
*.beta.cagna.com
cagna.com
*.cagna.com
*.cloud.cagna.com
*.dash.cagna.com
*.demo.cagna.com
*.emv1.cagna.com
*.gateway.cagna.com
*.m.cagna.com
*.mail.cagna.com
*.members.cagna.com
*.mx.cagna.com
*.pixel.cagna.com
*.portal.cagna.com
*.pro.cagna.com
*.rdp.cagna.com
*.rds.cagna.com
*.rds1.cagna.com
*.rdweb.cagna.com
*.remote.cagna.com
*.sitemap.cagna.com
*.sitemaps.cagna.com
*.vpn.cagna.com
*.ww16.cagna.com
*.ww17.cagna.com
*.www.cagna.com
*.agencia.celestialbank.co
*.app.celestialbank.co
celestialbank.co
*.celestialbank.co
*.dev.celestialbank.co
gomedicaresupplementinsurance.co
*.gomedicaresupplementinsurance.co
*.cpanel.hdmckuwsmp.com
hdmckuwsmp.com
*.hdmckuwsmp.com
*.mail.hdmckuwsmp.com
*.mandar.hdmckuwsmp.com
*.one.hdmckuwsmp.com
*.sitemap.hdmckuwsmp.com
*.webmail.hdmckuwsmp.com
*.www.hdmckuwsmp.com
homeclubsomes.site
*.homeclubsomes.site
*.www.homeclubsomes.site
noriaki01.com
*.noriaki01.com
*.forums.publicrealestate.com
*.hostmaster.publicrealestate.com
publicrealestate.com
*.publicrealestate.com
*.sitemap.publicrealestate.com
*.sitemaps.publicrealestate.com
*.ww1.publicrealestate.com
*.ww25.publicrealestate.com
*.data.teamvalet.com
*.notexistscms.teamvalet.com
*.sitemap.teamvalet.com
teamvalet.com
*.teamvalet.com
*.web.teamvalet.com
*.www.teamvalet.com
themagicbarber.com.br
*.themagicbarber.com.br
Other domains in certificate