76/100 SECURITY SCORE

Certificate Information

Subject
CN=gacornaga138.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 22, 2026
Valid Until
July 21, 2026 46 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A1:B8:E0:75:E3:18:E3:3D:5C:23:A1:AF:F2:92:E5:A6:AF:70:8A:1F:D7:0C:B6:62:6E:FA:61:A0:3F:49:3C:62
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
rewaltor.com *.rewaltor.com *.root.rewaltor.com *.webmail.rewaltor.com *.ww25.rewaltor.com

Other domains in certificate

class-action.it *.class-action.it
confederations.it *.confederations.it
*.account.gacornaga138.com *.accounts.gacornaga138.com *.api.gacornaga138.com *.authenticate.gacornaga138.com *.checkpoint.gacornaga138.com *.dashboard.gacornaga138.com *.fortigatevpn.gacornaga138.com gacornaga138.com *.gacornaga138.com *.rds.gacornaga138.com *.rs.gacornaga138.com *.smtp.gacornaga138.com *.storage.gacornaga138.com *.teams.gacornaga138.com *.testing.gacornaga138.com
gemsmudra.com *.gemsmudra.com
gta5inibd3dapk.com *.gta5inibd3dapk.com
icard.uk *.icard.uk
*.chem.nsfyoutube.com *.cpanel.nsfyoutube.com *.english.nsfyoutube.com *.forms.nsfyoutube.com nsfyoutube.com *.nsfyoutube.com *.service.nsfyoutube.com *.spb.nsfyoutube.com *.tr.nsfyoutube.com *.ww38.nsfyoutube.com
*.4537b0b6-48c6-4ab3-81a1-234ecfacaa91.profitnessus.com *.50d2288b-0e63-48bb-b1f4-63da41a111f6.profitnessus.com *.80a1e7ef-91b7-466f-9e60-e0f681a1eafb.profitnessus.com *.accounts.profitnessus.com *.admin.profitnessus.com *.agent.profitnessus.com *.api.profitnessus.com *.app.profitnessus.com *.argo.profitnessus.com *.backend.profitnessus.com *.bot.profitnessus.com *.chatbot.profitnessus.com *.client.profitnessus.com *.cloud.profitnessus.com *.dashboard.profitnessus.com *.dashs.profitnessus.com *.demo.profitnessus.com *.dev.profitnessus.com *.ef.profitnessus.com *.events.profitnessus.com *.home.profitnessus.com *.hostmaster.profitnessus.com *.insight-development.profitnessus.com *.m.profitnessus.com *.mail.profitnessus.com *.mobile.profitnessus.com *.news.profitnessus.com *.old.profitnessus.com *.prod.profitnessus.com profitnessus.com *.profitnessus.com *.rd.profitnessus.com *.rds.profitnessus.com *.rdweb.profitnessus.com *.remote.profitnessus.com *.report.profitnessus.com *.reporting.profitnessus.com *.reports.profitnessus.com *.school.profitnessus.com *.staging.profitnessus.com *.stats.profitnessus.com *.superset.profitnessus.com *.test.profitnessus.com *.vpn.profitnessus.com *.wap.profitnessus.com *.web.profitnessus.com *.workflow.profitnessus.com *.www.profitnessus.com
urgentcit.com *.urgentcit.com