Open
          
        
        
        
          
            
            Cached
            ·
            just now
          
        
      
    
        
          
        
        
          86/100
        
        
          SECURITY SCORE
        
      
    
  Certificate Information
        Subject
      
      
        
          CN=atlas.status.atlassian.com
        
      
    
        Issuer
      
      
        
          C=US, O=Let's Encrypt, CN=R13
        
      
    
        Valid From
      
      
        September 30, 2025
      
    
        Valid Until
      
      
        
          December 29, 2025
        
        
          
            55 days
          
        
      
    
        Public Key
      
      
        
          RSA
          
            2048 bit
          
          
        
        
          Adequate
        
      
    
        Signature Algorithm
      
      
        
          SHA256-RSA
        
        
      
    
        SHA-256 Fingerprint
      
      
        
          E8:C4:CF:97:70:19:A1:0B:89:84:25:9D:72:7F:E4:88:F5:95:36:D9:7E:89:28:FA:00:31:1E:BB:2D:14:79:2B
        
      
    
          Alternative Names
        
        
      Security Configuration
          TLS Protocols
        
        
          
            
              TLS 1.2
            
          
            
              TLS 1.3
            
          
        
      
          Forward Secrecy
        
        
          
            
              Supported
            
            
              (Modern clients use PFS)
            
          
        
        HTTP Security Headers
Status
      Strict-Transport-Security
    
    
    
      
        Present
      
    
    
    
      
        
          max-age=259200
        
      
    
    
    
      Content-Security-Policy
    
    
    
      
        Missing
      
    
    
    
      
        Not configured
      
    
    
    
      X-Frame-Options
    
    
    
      
        Missing
      
    
    
    
      
        Not configured
      
    
    
    
      X-Content-Type-Options
    
    
    
      
        Good
      
    
    
    
      
        
          nosniff
        
      
    
    
    
      Referrer-Policy
    
    
    
      
        Good
      
    
    
    
      
        
          strict-origin-when-cross-origin
        
      
    
    
    
      Permissions-Policy
    
    
    
      
        Missing
      
    
    
    
      
        Not configured
      
    
    
    
            
            Recommendations
          
          - • Increase HSTS max-age to at least 1 year and add includeSubDomains
 - • Add Content-Security-Policy header to prevent XSS attacks
 - • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
 - • Consider adding Permissions-Policy to control browser features
 
CAA Records (Certificate Authority Authorization)
CAA Records
        
          
            
              Configured
            
            (Restricts certificate issuance)
          
        
        Current Issuer
          
            
              
                Authorized
              
              (Matches CAA policy)
            
          
          Authorized CAs
            
          
            
            Recommendations
          
          - • Consider using critical flag (flags=128) for stricter CAA enforcement
 - • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
 - • Consider adding 'issuewild' records to control wildcard certificate issuance
 
Subject Alternative Names
33 domains
      
      
        
          
  
  
    atlas.status.atlassian.com
  
  
        
        
        
          
            
        
      
      
      
        
        
        
  
  
    status.alloy.com
  
  
      
        
        
          
        
        
  
  
    status.atomicvest.com
  
  
      
        
        
          
        
        
  
  
    status.eu.bigpanda.io
  
  
      
        
        
          
        
        
  
  
    status.calm.com
  
  
      
        
        
          
        
        
  
  
    status.clearfacts.be
  
  
      
        
        
          
        
        
  
  
    status.cropwise.com
  
  
      
        
        
          
        
        
  
  
    status.datajoinery.io
  
  
      
        
        
          
        
        
  
  
    status.drovio.com
  
  
      
        
        
          
        
        
  
  
    status.eturnity.io
  
  
      
        
        
          
        
        
  
  
    status.everdriven.com
  
  
      
        
        
          
        
        
  
  
    status.fossa.com
  
  
      
        
        
          
        
        
  
  
    status.getpinwheel.com
  
  
      
        
        
          
        
        
  
  
    ot.horizoniq.com
  
  
      
        
        
          
        
        
  
  
    status.jellyfish.co
  
  
      
        
        
          
        
        
  
  
    status.kmdlogic.io
  
  
      
        
        
          
        
        
  
  
    status.lexisnexisrisk.com
  
  
      
        
        
          
        
        
  
  
    status.liongard.com
  
  
      
        
        
          
        
        
  
  
    status.liveaware.io
  
  
      
        
        
          
        
        
  
  
    status.livekit.io
  
  
      
        
        
          
        
        
  
  
    status.livetiles.io
  
  
      
        
        
          
        
        
  
  
    status.lodasoft.com
  
  
      
        
        
          
        
        
  
  
    status.moogsoft.com
  
  
      
        
        
          
        
        
  
  
    status.ngm.se
  
  
      
        
        
          
        
        
  
  
    status.nodereal.io
  
  
      
        
        
          
        
        
  
  
    status.oscarpilvi.fi
  
  
      
        
        
          
        
        
  
  
    status.remote-field.ricoh
  
  
      
        
        
          
        
        
  
  
    status.selfhost.services
  
  
      
        
        
          
        
        
  
  
    status.swedlock.com
  
  
      
        
        
          
        
        
  
  
    status.taghub.net
  
  
      
        
        
          
        
        
  
  
    status.tradeshift.jp
  
  
      
        
        
          
        
        
  
  
    status.truelearn.com
  
  
      
        
        
          
        
        
  
  
    status.tryinteract.com
  
  
      
    
  Other domains in certificate