Open
Cached
·
just now
90/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
C=US, ST=Minnesota, O=Entrust Corporation, CN=entrustdatacard.com
Issuer
C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication CA OV R36
Valid From
November 10, 2025
Valid Until
November 10, 2026
192 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:58:6A:2B:9E:7B:C6:04:AF:E0:E3:67:57:C1:7D:FE:F8:46:E9:15:58:BD:FB:8F:10:79:DF:17:66:F4:6B:CB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
same-origin
Permissions-Policy
Present
accelerometer=(), browsing-topics=(), camera=(); +15 more
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
51 domains
entrustdatacard.com
adp.entrustdatacard.com
cms.entrustdatacard.com
connectdev1.entrustdatacard.com
connecttest.entrustdatacard.com
demo.entrustdatacard.com
dr.entrustdatacard.com
drcms.entrustdatacard.com
drpreview.entrustdatacard.com
drtbr.entrustdatacard.com
drtch.entrustdatacard.com
drtde.entrustdatacard.com
drtfr.entrustdatacard.com
drtjp.entrustdatacard.com
drtko.entrustdatacard.com
drtlac.entrustdatacard.com
drtru.entrustdatacard.com
preview.entrustdatacard.com
prod.entrustdatacard.com
prod2.entrustdatacard.com
prodpreview.entrustdatacard.com
prodpreview2.entrustdatacard.com
tbr.entrustdatacard.com
tch.entrustdatacard.com
tde.entrustdatacard.com
test.entrustdatacard.com
test2.entrustdatacard.com
testpreview.entrustdatacard.com
testpreview2.entrustdatacard.com
testtbr.entrustdatacard.com
testtbr2.entrustdatacard.com
testtch.entrustdatacard.com
testtch2.entrustdatacard.com
testtde.entrustdatacard.com
testtde2.entrustdatacard.com
testtfr.entrustdatacard.com
testtfr2.entrustdatacard.com
testtjp.entrustdatacard.com
testtjp2.entrustdatacard.com
testtko.entrustdatacard.com
testtko2.entrustdatacard.com
testtlac.entrustdatacard.com
testtlac2.entrustdatacard.com
testtru.entrustdatacard.com
testtru2.entrustdatacard.com
tfr.entrustdatacard.com
tjp.entrustdatacard.com
tko.entrustdatacard.com
tlac.entrustdatacard.com
tru.entrustdatacard.com
www.entrustdatacard.com