Open
          
        
        
        
          
            
            Cached
            ·
            just now
          
        
      
    
        
          
        
        
          86/100
        
        
          SECURITY SCORE
        
      
    
  Certificate Information
        Subject
      
      
        
          CN=tls.automattic.com
        
      
    
        Issuer
      
      
        
          C=US, O=Let's Encrypt, CN=E8
        
      
    
        Valid From
      
      
        September 05, 2025
      
    
        Valid Until
      
      
        
          December 04, 2025
        
        
          
            30 days
          
        
      
    
        Public Key
      
      
        
          ECDSA
          
            256 bit
          
          
            (P-256)
          
        
        
          Adequate
        
      
    
        Signature Algorithm
      
      
        
          ECDSA-SHA384
        
        
      
    
        SHA-256 Fingerprint
      
      
        
          F8:68:65:15:E4:D7:F2:F0:C8:D7:04:57:E2:1E:B6:50:D3:0B:89:5F:39:9F:D7:6F:80:8D:AB:47:47:86:8A:B3
        
      
    
          Alternative Names
        
        
      Security Configuration
          TLS Protocols
        
        
          
            
              TLS 1.2
            
          
            
              TLS 1.3
            
          
        
      
          Forward Secrecy
        
        
          
            
              Supported
            
            
              (Modern clients use PFS)
            
          
        
        HTTP Security Headers
Status
      Strict-Transport-Security
    
    
    
      
        Present
      
    
    
    
      
        
          max-age=31536000
        
      
    
    
    
      Content-Security-Policy
    
    
    
      
        Missing
      
    
    
    
      
        Not configured
      
    
    
    
      X-Frame-Options
    
    
    
      
        Good
      
    
    
    
      
        
          SAMEORIGIN
        
      
    
    
    
      X-Content-Type-Options
    
    
    
      
        Good
      
    
    
    
      
        
          nosniff
        
      
    
    
    
      Referrer-Policy
    
    
    
      
        Good
      
    
    
    
      
        
          no-referrer-when-downgrade
        
      
    
    
    
      Permissions-Policy
    
    
    
      
        Missing
      
    
    
    
      
        Not configured
      
    
    
    
            
            Recommendations
          
          - • Increase HSTS max-age to at least 1 year and add includeSubDomains
 - • Add Content-Security-Policy header to prevent XSS attacks
 - • Consider adding Permissions-Policy to control browser features
 
CAA Records (Certificate Authority Authorization)
CAA Records
        
          
            
              Not Configured
            
            (Any CA can issue certificates)
          
        
        
            
            CAA Issues
          
          - • No CAA records configured - any CA can issue certificates
 
            
            Recommendations
          
          - • Implement CAA records to restrict which CAs can issue certificates for your domain
 - • This adds an extra layer of security against unauthorized certificate issuance
 - • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
 - • Consider adding 'iodef' record to receive security incident reports
 
Subject Alternative Names
51 domains
      
      
        
          
  
  
    camunda.com
  
  
        
        
        
          
            
        
      
      
      
        
        
        
  
  
    admin68.shop
  
  
      
        
        
        
  
  
    www.admin68.shop
  
  
      
        
        
          
        
        
  
  
    tls.automattic.com
  
  
      
        
        
          
        
        
  
  
    beautycollab.co
  
  
      
        
        
        
  
  
    www.beautycollab.co
  
  
      
        
        
          
        
        
  
  
    centrosocialsoutodacarpalhosa.social
  
  
      
        
        
          
        
        
  
  
    cryptodog.code.blog
  
  
      
        
        
        
  
  
    move3studio.code.blog
  
  
      
        
        
        
  
  
    www.cryptodog.code.blog
  
  
      
        
        
        
  
  
    www.move3studio.code.blog
  
  
      
        
        
          
        
        
  
  
    cookforme.uk
  
  
      
        
        
          
        
        
  
  
    divorcinganarcissistblog.com
  
  
      
        
        
        
  
  
    www.divorcinganarcissistblog.com
  
  
      
        
        
          
        
        
  
  
    blessed.family.blog
  
  
      
        
        
        
  
  
    king40kinney.family.blog
  
  
      
        
        
        
  
  
    ombresetlumieres.family.blog
  
  
      
        
        
        
  
  
    sreenivasfamilypg.family.blog
  
  
      
        
        
        
  
  
    www.blessed.family.blog
  
  
      
        
        
        
  
  
    www.king40kinney.family.blog
  
  
      
        
        
        
  
  
    www.ombresetlumieres.family.blog
  
  
      
        
        
        
  
  
    www.sreenivasfamilypg.family.blog
  
  
      
        
        
        
  
  
    www.youcallitchaosicallot.family.blog
  
  
      
        
        
        
  
  
    youcallitchaosicallot.family.blog
  
  
      
        
        
          
        
        
  
  
    anameofadomain.fashion.blog
  
  
      
        
        
        
  
  
    comedy.fashion.blog
  
  
      
        
        
        
  
  
    hotguyschat878.fashion.blog
  
  
      
        
        
        
  
  
    huhwhatohhahaok.fashion.blog
  
  
      
        
        
        
  
  
    kleanstreetwear.fashion.blog
  
  
      
        
        
        
  
  
    vestiment.fashion.blog
  
  
      
        
        
        
  
  
    www.anameofadomain.fashion.blog
  
  
      
        
        
        
  
  
    www.comedy.fashion.blog
  
  
      
        
        
        
  
  
    www.hotguyschat878.fashion.blog
  
  
      
        
        
        
  
  
    www.huhwhatohhahaok.fashion.blog
  
  
      
        
        
        
  
  
    www.kleanstreetwear.fashion.blog
  
  
      
        
        
        
  
  
    www.saharawadlehi31.fashion.blog
  
  
      
        
        
        
  
  
    www.vestiment.fashion.blog
  
  
      
        
        
          
        
        
  
  
    goodnightbooks.com
  
  
      
        
        
        
  
  
    www.goodnightbooks.com
  
  
      
        
        
          
        
        
  
  
    katherineriegel.com
  
  
      
        
        
          
        
        
  
  
    knivslipare.com
  
  
      
        
        
        
  
  
    www.knivslipare.com
  
  
      
        
        
          
        
        
  
  
    lanzarote-views.de
  
  
      
        
        
        
  
  
    www.lanzarote-views.de
  
  
      
        
        
          
        
        
  
  
    longshotbicycles.com
  
  
      
        
        
        
  
  
    www.longshotbicycles.com
  
  
      
        
        
          
        
        
  
  
    favsongs.music.blog
  
  
      
        
        
        
  
  
    www.favsongs.music.blog
  
  
      
        
        
          
        
        
  
  
    mustardseedrealtyfunds.com
  
  
      
        
        
        
  
  
    www.mustardseedrealtyfunds.com
  
  
      
        
        
          
        
        
  
  
    www.napacountytimes.com
  
  
      
    
  Other domains in certificate