Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=buddythecasamadera.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 19, 2025
Valid Until
March 19, 2026
38 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:AB:75:BF:59:63:64:ED:08:B5:60:8B:F1:FF:48:ED:26:78:43:97:57:C4:72:53:F9:C2:ED:D7:25:E4:83:4E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ort.au
*.ort.au
*.acca.ort.au
*.activesearch.ort.au
*.aip.ort.au
*.arcsupport.ort.au
*.cdfonline.ort.au
*.cpl.ort.au
*.creditsmart.ort.au
*.discover.ort.au
*.doncare.ort.au
*.earthsharing.ort.au
*.faircopyright.ort.au
*.hockey.ort.au
*.htpaa.ort.au
*.inghaminstitute.ort.au
*.john1hbluecare.ort.au
*.justiceconnect.ort.au
*.liveslivedwellcareers.ort.au
*.msra.ort.au
*.myrapp.ort.au
*.nationaltrust.ort.au
*.npaq.ort.au
*.pakistan.ort.au
*.rdatasmania.ort.au
*.sah.ort.au
*.seashepherd.ort.au
*.shepherdcentre.ort.au
*.solarsavers.ort.au
*.tadaust.ort.au
*.wam.ort.au
*.workfromhome.ort.au
*.workright.ort.au
*.242www.bcbst.cm
bcbst.cm
*.bcbst.cm
biboshop.com
*.biboshop.com
*.ww25.biboshop.com
buddythecasamadera.com
*.buddythecasamadera.com
bynu.info
*.bynu.info
*.ns2.bynu.info
*.bemestaragora.cambuinfo.com.br
cambuinfo.com.br
*.cambuinfo.com.br
*.com.cambuinfo.com.br
chrysler.cm
*.chrysler.cm
*.dealerconnect.chrysler.cm
*.intra.chrysler.cm
*.tcom.chrysler.cm
*.ww16.chrysler.cm
*.ww25.chrysler.cm
*.ww38.chrysler.cm
citihankyoucard.com
*.citihankyoucard.com
cjyxs123.org
*.cjyxs123.org
condiem.com
*.condiem.com
*.sexgai.condiem.com
*.sexhihi.condiem.com
dickssportinggussale.online
*.dickssportinggussale.online
*.ww25.dickssportinggussale.online
*.demo.exgirlfreind.com
exgirlfreind.com
*.exgirlfreind.com
*.jim.exgirlfreind.com
*.pipeline.exgirlfreind.com
*.rz.exgirlfreind.com
*.users.exgirlfreind.com
jobsindice.com
*.jobsindice.com
*.ww16.jobsindice.com
*.emv1.mollys.au
mollys.au
*.mollys.au
*.asseenontv.shoptv.com
*.on.shoptv.com
*.secure.shoptv.com
shoptv.com
*.shoptv.com
*.static-assets.shoptv.com
*.ww38.shoptv.com
tinder.promo
*.tinder.promo
*.ww1.tinder.promo
Other domains in certificate