Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=scrip.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 29, 2026
Valid Until
April 29, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CD:7A:1D:D7:14:AC:01:85:A9:4F:39:2D:19:41:05:48:27:E7:FD:48:85:6F:09:C2:71:64:16:4C:F0:5C:18:AA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
87 domains
awesomeops.org
*.awesomeops.org
123moviesgo.tf
*.123moviesgo.tf
188bet.tube
*.188bet.tube
27230.locker
*.27230.locker
29055.net
*.29055.net
37256.pizza
*.37256.pizza
51382.pizza
*.51382.pizza
56308.pizza
*.56308.pizza
619escort.com
*.619escort.com
789bet.porn
*.789bet.porn
82514.loan
*.82514.loan
888b.tax
*.888b.tax
advertisingagenciesinchicago.com
*.advertisingagenciesinchicago.com
aibrandstory.com
*.aibrandstory.com
apcsc.org
*.apcsc.org
arenasportgrill.com
*.arenasportgrill.com
askokeith.com
*.askokeith.com
audiophilez.com
*.audiophilez.com
austriaonsnow.com
*.austriaonsnow.com
auto-insurance-quotes.buzz
*.auto-insurance-quotes.buzz
autocharges.com
*.autocharges.com
autoloans.buzz
*.autoloans.buzz
automaticbuilders.com
*.automaticbuilders.com
aviationmagic.com
*.aviationmagic.com
awardtoken.com
*.awardtoken.com
awayattitude.org
*.awayattitude.org
awesomehealth.us
*.awesomehealth.us
awlquik.com
*.awlquik.com
azrimedia.com
*.azrimedia.com
baanmod.com
*.baanmod.com
bangtan.cc
*.bangtan.cc
bd-verify-wawuyirnjs.click
*.bd-verify-wawuyirnjs.click
bilgiotag.org
*.bilgiotag.org
biomedical-engineering-degree.click
*.biomedical-engineering-degree.click
bistro11.net
*.bistro11.net
businessbrokershub.com
*.businessbrokershub.com
byggekvalitetssikring727048.icu
*.byggekvalitetssikring727048.icu
carrynet.com
*.carrynet.com
carsoceanside.com
*.carsoceanside.com
chartert.com
*.chartert.com
chesterindependent.com
*.chesterindependent.com
chinaqueeninfo28.com
*.chinaqueeninfo28.com
scrip.com.au
*.scrip.com.au
*.ww38.scrip.com.au
Other domains in certificate