Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=dalycityseniors.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 16, 2026
Valid Until
May 17, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
57:7A:8F:D1:D3:A7:F5:09:BC:C1:B8:AA:5F:69:D5:62:3E:82:D6:CB:02:18:3F:5D:32:5C:32:19:0D:9D:69:DE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
weer.cc
*.weer.cc
882198.academy
*.882198.academy
*.academy.882198.academy
backendengineer.io
*.backendengineer.io
*.mx.backendengineer.io
*.sitemap.backendengineer.io
*.apps.cicgc.ca
cicgc.ca
*.cicgc.ca
*.hostmaster.cicgc.ca
*.ptson-srpelapps.cicgc.ca
*.ww38.cicgc.ca
*.www.cicgc.ca
dalycityseniors.org
*.dalycityseniors.org
*.zh.dalycityseniors.org
hitgh.com
*.hitgh.com
*.hostmaster.hitgh.com
*.ujhqcforticlient.hitgh.com
*.172c2932-6d46-4836-a607-c3329c4d2074.igd.academy
*.84124aa0-5bf0-4e8f-9c1c-04dc73e333ff.igd.academy
*.api.igd.academy
*.app.igd.academy
*.backup.igd.academy
*.dashboard.igd.academy
*.e51d50f6-f2f4-42b1-bafc-4544d4fcb5bd.igd.academy
*.fe848d9f-42f2-4b74-9b39-12fb6ecede3c.igd.academy
*.hostmaster.igd.academy
*.ibvexoak.igd.academy
igd.academy
*.igd.academy
*.mail.igd.academy
*.qa.igd.academy
*.secure.igd.academy
*.staging.igd.academy
*.v1.igd.academy
plazalighter.com
*.plazalighter.com
pleatherjackets.com
*.pleatherjackets.com
prooitmove.club
*.prooitmove.club
*.501a5ba9-f435-4e3c-8883-9d5e496ca41d.qnys50.app
qnys50.app
*.qnys50.app
qyc59.vip
*.qyc59.vip
rrrggg.cc
*.rrrggg.cc
scorepaladin220.info
*.scorepaladin220.info
shoponline.cc
*.shoponline.cc
sihirbet23.net
*.sihirbet23.net
susiz.net
*.susiz.net
susoesspro.club
*.susoesspro.club
sweetcomet.com
*.sweetcomet.com
tapas.cc
*.tapas.cc
td91761.cc
*.td91761.cc
*.mimingworld.titirang.com
*.nari.titirang.com
titirang.com
*.titirang.com
*.umojeong.titirang.com
tzaqde.net
*.tzaqde.net
ubaytic.com
*.ubaytic.com
ufa303.cc
*.ufa303.cc
ufa303.org
*.ufa303.org
understandingcrypto.info
*.understandingcrypto.info
vbghy.cc
*.vbghy.cc
wzuqe.net
*.wzuqe.net
Other domains in certificate