Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=broadus.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 06, 2026
Valid Until
July 05, 2026 32 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
00:A3:7A:A3:8D:CE:FA:6D:C6:0E:A0:6C:1C:F2:81:ED:A9:35:77:E6:ED:00:49:B6:35:C8:8E:1F:F0:D1:66:44
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
cdnlr0.com *.cdnlr0.com *.auth.cdnlr0.com *.video.cdnlr0.com *.wiki.cdnlr0.com *.ww38.cdnlr0.com

Other domains in certificate

*.api.broadus.com *.app.broadus.com broadus.com *.broadus.com *.connect.broadus.com *.emv1.broadus.com *.hostmaster.broadus.com *.lyncdiscover.broadus.com *.m.broadus.com *.mail.broadus.com *.outlook.broadus.com *.owa.broadus.com *.remote.broadus.com *.secure.broadus.com *.sitemap.broadus.com *.sitemaps.broadus.com *.webmail.broadus.com *.ww11.broadus.com *.ww16.broadus.com *.ww25.broadus.com *.ww38.broadus.com
*.autodiscover.fashiondance.it *.cpanel.fashiondance.it fashiondance.it *.fashiondance.it *.www.fashiondance.it
jrqwfdkksamx.com *.jrqwfdkksamx.com
*.dashboard.locallydelivered.com locallydelivered.com *.locallydelivered.com *.orkflow.locallydelivered.com *.rds.locallydelivered.com *.rum.locallydelivered.com *.store.locallydelivered.com
mackintosh-uk.com *.mackintosh-uk.com *.ww25.mackintosh-uk.com *.www.mackintosh-uk.com
*.acceso.menant.com *.clientesvpn.menant.com menant.com *.menant.com *.secureconnect.menant.com *.vdi.menant.com *.vpn2.menant.com *.vpnssl.menant.com
*.8bc6d4ce-c2f2-42ac-bf68-6422ea6591af.newcasino.news *.api.newcasino.news *.app.newcasino.news *.backup.newcasino.news *.dc8623ab-d627-4783-bfc3-8037c644eb19.newcasino.news *.dev.newcasino.news *.home.newcasino.news *.hostmaster.newcasino.news *.mail.newcasino.news *.mailer.newcasino.news *.members.newcasino.news newcasino.news *.newcasino.news *.pwzdibem.newcasino.news *.secure.newcasino.news *.staging.newcasino.news *.stg.newcasino.news *.test.newcasino.news *.uat.newcasino.news *.v1.newcasino.news *.v2.newcasino.news *.wafhxv2.newcasino.news *.wazimqa.newcasino.news *.web.newcasino.news
painstudios.store *.painstudios.store
radioclashblog.com *.radioclashblog.com *.ww25.radioclashblog.com *.www.radioclashblog.com
*.mail.thetartangroup.com thetartangroup.com *.thetartangroup.com
*.ns2.zelenikljuc.org zelenikljuc.org *.zelenikljuc.org