76/100 SECURITY SCORE

Certificate Information

Subject
CN=auditlog.dev
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 16, 2026
Valid Until
August 14, 2026 79 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BC:99:EE:51:91:3D:DB:93:BA:34:BD:DF:F5:9A:D5:00:08:4A:1A:E6:B9:70:90:A2:FF:15:D8:6A:86:27:38:28
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
auditlog.dev *.auditlog.dev *.admin.auditlog.dev *.ai.auditlog.dev *.app.auditlog.dev *.backup.auditlog.dev *.bot.auditlog.dev *.console.auditlog.dev *.cosmos.auditlog.dev *.dev.auditlog.dev *.gpt.auditlog.dev *.gtr.auditlog.dev *.inst.auditlog.dev *.new.auditlog.dev *.next.auditlog.dev *.st.auditlog.dev *.staging.auditlog.dev *.uat.auditlog.dev *.www.auditlog.dev *.ypssz4.auditlog.dev

Other domains in certificate

10xadvantage.info *.10xadvantage.info *.intranet.10xadvantage.info
advanceamplifyynexus.info *.advanceamplifyynexus.info *.aw448w.advanceamplifyynexus.info
apikeckabtulangbawang.org *.apikeckabtulangbawang.org *.hs4jhg.apikeckabtulangbawang.org
*.88rutu.apikecsabang.org apikecsabang.org *.apikecsabang.org
apipemkabtanatidung.org *.apipemkabtanatidung.org *.le0g29.apipemkabtanatidung.org
*.aj1awh.blockswap.live *.app.blockswap.live blockswap.live *.blockswap.live *.webmail.blockswap.live
*.backend.gamoneinterrupted.com gamoneinterrupted.com *.gamoneinterrupted.com *.m.gamoneinterrupted.com *.staging.gamoneinterrupted.com
*.1846m.jaguarads.top *.4yj7f.jaguarads.top *.6s98n.jaguarads.top *.api.jaguarads.top *.app.jaguarads.top *.bnbod.jaguarads.top *.d.jaguarads.top *.dev.jaguarads.top *.eu3rm.jaguarads.top *.fdb74.jaguarads.top *.iovou.jaguarads.top jaguarads.top *.jaguarads.top *.kp5po.jaguarads.top *.lbcp6.jaguarads.top *.mail.jaguarads.top *.osldc.jaguarads.top *.rczhl.jaguarads.top *.sbd1u.jaguarads.top *.tzygd.jaguarads.top *.v3ywp.jaguarads.top *.wslq2.jaguarads.top *.z4gbs.jaguarads.top
*.dl.magistvs.com.mx magistvs.com.mx *.magistvs.com.mx
*.m.notebooked.com notebooked.com *.notebooked.com
qfydav.top *.qfydav.top *.www.qfydav.top
*.outbound-1618477747-101.realtimes.io *.outbound-1621516626-101.realtimes.io realtimes.io *.realtimes.io *.xadmin.realtimes.io
*.finance.taxi-limousine.com *.reporting.taxi-limousine.com taxi-limousine.com *.taxi-limousine.com *.www.taxi-limousine.com
*.0ow2zw.town.onl town.onl *.town.onl