Open
Cached
·
just now
75/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
C=US, ST=New York, L=New York, O=Yahoo Holdings Inc., CN=*.pubgw.ads.yahoo.com
Issuer
C=US, O=DigiCert Inc, CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1
Valid From
January 12, 2026
Valid Until
March 04, 2026
11 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:42:52:CE:16:E6:ED:AF:F3:86:B4:82:C1:70:DA:18:6D:25:3A:94:66:CC:6F:02:2C:86:CC:1B:A8:9F:FA:D1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.0
TLS 1.1
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
Warnings
- • TLS 1.1 is deprecated and should be disabled
- • TLS 1.0 is deprecated and should be disabled
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
59 domains
ads.yahoo.com
adserver.yahoo.com
fc.yahoo.com
safeframes.yahoo.com
yax.yahoo.com
*.admanagerplus.yahoo.com
*.ads.yahoo.com
*.adserver.yahoo.com
*.adw.yahoo.com
*.dspai.yahoo.com
*.fc.yahoo.com
*.onemobile.yahoo.com
*.pubgw.yahoo.com
*.ras.yahoo.com
*.yax.yahoo.com
admetricsqa.uadapp.yahoo.com
agent.audienceiq-staging.yahoo.com
ap-southeast-1-web-oao.ssp.yahoo.com
apac.homepage-ads.yahoo.com
api-da.local.yahoo.com
au.homepage-ads.yahoo.com
c2shb.ssp.yahoo.com
certificator.advertising.yahoo.com
cms.analytics.yahoo.com
cookiex.ngd.yahoo.com
dd-ext.local.yahoo.com
dev-cms.analytics.yahoo.com
dev-ups.analytics.yahoo.com
emea.homepage-ads.yahoo.com
eu-central-1-web-oao.ssp.yahoo.com
global.homepage-ads.yahoo.com
jill.fc.yahoo.com
politicaladsapi.adx.yahoo.com
scrserv.amp.yahoo.com
sea.advertising.yahoo.com
ups.analytics.yahoo.com
us-east-1-web-oao.ssp.yahoo.com
us-west-1-web-oao.ssp.yahoo.com
web.ssp.yahoo.com
*.api.streamads.yahoo.com
*.pubgw.ads.yahoo.com
*.report.gemini.yahoo.com
*.tns.adx.yahoo.com
adfeedback.beap.adx.yahoo.com
api-adfeedback.beap.adx.yahoo.com
client.tools.advertising.yahoo.com
*.stage.report.gemini.yahoo.com
canary.ap-southeast-1.ups.analytics.yahoo.com
ads.flurry.com
api.ads.flurry.com
partnerads-test.ysm.yahoo.net
partnerads.ysm.yahoo.net
ptest.ysm.yahoo.net
cdn.yahoomedia.net
qa-cdn.yahoomedia.net
jac.yahoosandbox.com
qa-jac.yahoosandbox.com
stage-jac.yahoosandbox.com
*.ad.yieldmanager.net
Other domains in certificate