76/100 SECURITY SCORE

Certificate Information

Subject
CN=tamago.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 04, 2026
Valid Until
August 02, 2026 53 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5B:79:85:5F:E4:C9:96:8B:78:4A:5A:87:63:56:08:E3:B8:61:9B:08:4C:61:AC:46:AE:8B:08:29:D6:DA:83:D4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
notemetas.com *.notemetas.com *.admin.notemetas.com

Other domains in certificate

bajawaterfront.com *.bajawaterfront.com
healthparterners.com *.healthparterners.com *.ww38.healthparterners.com
*.crm.lenserental.com *.education.lenserental.com lenserental.com *.lenserental.com *.nl.lenserental.com *.projects.lenserental.com *.us.lenserental.com *.ww11.lenserental.com *.ww16.lenserental.com *.ww25.lenserental.com *.ww38.lenserental.com
maedaguasp.com *.maedaguasp.com *.magento.maedaguasp.com *.reservas.maedaguasp.com
*.cdn.memeslanding.com memeslanding.com *.memeslanding.com *.mobile.memeslanding.com *.ww25.memeslanding.com
multiverseros.com *.multiverseros.com *.ww38.multiverseros.com
*.hostmaster.netwokhealth.com netwokhealth.com *.netwokhealth.com
printors.com *.printors.com
*.darmowe.produkty.com produkty.com *.produkty.com
*.hostmaster.routinetakeover.com routinetakeover.com *.routinetakeover.com
*.beta.royalthaicafe.com *.bi.royalthaicafe.com *.careers.royalthaicafe.com *.demo.royalthaicafe.com *.dev.royalthaicafe.com *.flow.royalthaicafe.com *.flowise.royalthaicafe.com *.flowiseai.royalthaicafe.com *.german.royalthaicafe.com *.mm.royalthaicafe.com *.mobi.royalthaicafe.com *.reg.royalthaicafe.com royalthaicafe.com *.royalthaicafe.com *.sa.royalthaicafe.com *.superset.royalthaicafe.com *.webmail.royalthaicafe.com
scooterclassifieds.com.au *.scooterclassifieds.com.au
sunspace.co *.sunspace.co *.www.sunspace.co
*.api.tamago.live *.autodiscover.tamago.live *.internal-wiki.tamago.live *.live.tamago.live *.m3u8.tamago.live *.player-dev.tamago.live *.player.tamago.live *.random.tamago.live *.share.tamago.live *.stream.tamago.live tamago.live *.tamago.live *.video.tamago.live
*.cpcalendars.trenesparacentroscomerciales.xyz *.cpcontacts.trenesparacentroscomerciales.xyz *.mail.trenesparacentroscomerciales.xyz trenesparacentroscomerciales.xyz *.trenesparacentroscomerciales.xyz
*.admin.waynedentists.com waynedentists.com *.waynedentists.com
wtremobile.com *.wtremobile.com *.www.wtremobile.com