Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=cdn.allweathersearch.com
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
November 10, 2025
Valid Until
December 09, 2026
319 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D7:F8:98:69:90:69:C1:E8:85:13:53:6E:E8:49:5F:84:7C:C2:96:0B:18:E2:5E:FE:D1:6F:E0:02:68:87:64:0E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
75 domains
cdn.mapsrch.com
cdn.aiolichef.com
cdn.aiolisouschef-cdn.com
cdn.aiolisouschef.com
cdn.allweathersearch-cdn.com
cdn.allweathersearch.com
cdn.answerbuddy-cdn.app
cdn.answerbuddy.app
cdn.breakingnewstab.com
cdn.breakingnewstab.net
cdn.carbonatebrowser.com
cdn.clarie.com
cdn.easyprint-cdn.app
cdn.easyprint.app
cdn.easysave-cdn.app
cdn.easysave.app
cdn.easyview-cdn.app
cdn.easyview.app
cdn.fabtab.org
cdn.flairwallpapers-cdn.com
cdn.flairwallpapers.com
cdn.frompdftodoc-cdn.com
cdn.frompdftodoc.com
cdn.frompdftodoctab-cdn.com
cdn.getallsearch-cdn.net
cdn.getbetterscreenshot-cdn.com
cdn.getbettersearch-cdn.com
cdn.getbettersearch.com
cdn.getcookiecruncher-cdn.com
cdn.getcubbie-cdn.com
cdn.geteasyfind-cdn.com
cdn.geteasyshare-cdn.app
cdn.geteasyshare.app
cdn.getmediaplayer10.com
cdn.getsipapp-cdn.com
cdn.getsipapp.com
cdn.gettemplates-cdn.net
cdn.gettemplates.net
cdn.gettvsearch-cdn.org
cdn.gettvsearch.net
cdn.gettvsearch.org
cdn.horoscopesoftheday.com
cdn.manualsbyclear.com
cdn.manualsdirectory-cdn.org
cdn.manualsdirectory.org
cdn.manualsearch-cdn.org
cdn.manualsearch.org
cdn.manualslibrary.co
cdn.manualslibrary.org
cdn.manualslibrarytab-cdn.org
cdn.mapsrch-altsvc.com
cdn.mapsrch-cdn.com
cdn.mapsrch-svc.com
cdn.mediaplayer10-cdn.com
cdn.mediaplayer10-cdn.net
cdn.mediaplayer10-svc.com
cdn.mediaplayer10.com
cdn.mediaplayer10.net
cdn.packagetrackertab.net
cdn.paperboynews-cdn.app
cdn.paperboynews.app
cdn.pdftab.org
cdn.printrecipes-cdn.net
cdn.printrecipes.net
cdn.quickrecipessearch.com
cdn.quickspeedtest-cdn.net
cdn.quickspeedtest.net
cdn.quickspeedtest.org
cdn.searchables.net
cdn.searchandprint-cdn.recipes
cdn.searchandprint.recipes
cdn.searchsweeper-cdn.com
cdn.searchsweeper.com
cdn.wallpapermania.org
cdn.weathertab-cdn.org
Other domains in certificate