76/100 SECURITY SCORE

Certificate Information

Subject
CN=buddythecasamadera.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 19, 2025
Valid Until
March 19, 2026 38 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:AB:75:BF:59:63:64:ED:08:B5:60:8B:F1:FF:48:ED:26:78:43:97:57:C4:72:53:F9:C2:ED:D7:25:E4:83:4E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ort.au *.ort.au *.acca.ort.au *.activesearch.ort.au *.aip.ort.au *.arcsupport.ort.au *.cdfonline.ort.au *.cpl.ort.au *.creditsmart.ort.au *.discover.ort.au *.doncare.ort.au *.earthsharing.ort.au *.faircopyright.ort.au *.hockey.ort.au *.htpaa.ort.au *.inghaminstitute.ort.au *.john1hbluecare.ort.au *.justiceconnect.ort.au *.liveslivedwellcareers.ort.au *.msra.ort.au *.myrapp.ort.au *.nationaltrust.ort.au *.npaq.ort.au *.pakistan.ort.au *.rdatasmania.ort.au *.sah.ort.au *.seashepherd.ort.au *.shepherdcentre.ort.au *.solarsavers.ort.au *.tadaust.ort.au *.wam.ort.au *.workfromhome.ort.au *.workright.ort.au

Other domains in certificate

*.242www.bcbst.cm bcbst.cm *.bcbst.cm
biboshop.com *.biboshop.com *.ww25.biboshop.com
buddythecasamadera.com *.buddythecasamadera.com
bynu.info *.bynu.info *.ns2.bynu.info
*.bemestaragora.cambuinfo.com.br cambuinfo.com.br *.cambuinfo.com.br *.com.cambuinfo.com.br
chrysler.cm *.chrysler.cm *.dealerconnect.chrysler.cm *.intra.chrysler.cm *.tcom.chrysler.cm *.ww16.chrysler.cm *.ww25.chrysler.cm *.ww38.chrysler.cm
citihankyoucard.com *.citihankyoucard.com
cjyxs123.org *.cjyxs123.org
condiem.com *.condiem.com *.sexgai.condiem.com *.sexhihi.condiem.com
dickssportinggussale.online *.dickssportinggussale.online *.ww25.dickssportinggussale.online
*.demo.exgirlfreind.com exgirlfreind.com *.exgirlfreind.com *.jim.exgirlfreind.com *.pipeline.exgirlfreind.com *.rz.exgirlfreind.com *.users.exgirlfreind.com
jobsindice.com *.jobsindice.com *.ww16.jobsindice.com
*.emv1.mollys.au mollys.au *.mollys.au
*.asseenontv.shoptv.com *.on.shoptv.com *.secure.shoptv.com shoptv.com *.shoptv.com *.static-assets.shoptv.com *.ww38.shoptv.com
tinder.promo *.tinder.promo *.ww1.tinder.promo