Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=cdn.openfile-cdn.live
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
March 25, 2025
Valid Until
April 23, 2026
90 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EF:7A:DA:C1:C9:A8:2F:19:8B:B6:39:BC:5C:FD:CF:B3:96:61:21:9B:1A:73:B2:C8:63:69:D1:F7:45:4B:56:EB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
80 domains
cdn.pdftab.com
cdna.adshield-cdn.co
cdna.adshield-cdn.me
cdna.adshield.me
cdna.fileconvertor-cdn.org
cdna.fileconvertor.org
cdna.myofficex.org
cdn.openfile-cdn.live
cdn.openfile.live
cdn.openfiletab-cdn.live
cdn.packagesearch-cdn.org
cdn.packagesearch.org
cdn.packagetracker-cdn.pro
cdn.packagetracker.pro
cdn.packagetrackertab-cdn.pro
cdn.pdf.live
cdn.pdf.studio
cdn.pdftab-cdn.com
cdn.readproductmanuals.com
cdn.recipestab-cdn.com
cdn.recipestab.com
cdn.reversesearch-cdn.org
cdn.reversesearch.org
cdn.search-cdn.recipes
cdn.search.recipes
cdn.searchbypdftodoc.com
cdn.searchforcoupons-cdn.org
cdn.searchforcoupons.org
cdn.searchfordirections-cdn.com
cdn.searchfordirections.com
cdn.searchforgames-cdn.org
cdn.searchformanuals-cdn.org
cdn.searchformanuals.org
cdn.searchforrecipe-cdn.com
cdn.searchforrecipe.com
cdn.searchforrecipes-cdn.com
cdn.searchforweather-cdn.com
cdn.searchforweather.com
cdn.searchforweathercdn.com
cdn.searchtabnew-cdn.com
cdn.searchtabnew.com
cdn.searchtabnewa-cdn.com
cdn.searchtabnewa.com
cdn.shortcutsbar.com
cdn.srchnet.co
cdna.srchnet.co
cdn.srchnet.info
cdna.srchnet.info
cdn.srchsafe-cdn.com
cdna.srchsafe-cdn.com
cdn.srchsafe.com
cdna.srchsafe.com
cdn.srchweb.co
cdna.srchweb.co
cdn.srchweb.info
cdna.srchweb.info
cdn.streamtvsearch-cdn.com
cdn.streamtvsearch.com
cdn.streamtvsearch.net
cdn.unrar-cdn.org
cdn.unrar.org
cdn.unzipper-cdn.com
cdn.unzipper.com
cdn.videodownloadconvertor-cdn.com
cdn.videodownloadconvertor.com
cdn.viewmapstab-cdn.com
cdn.wallpapers-cdn.fm
cdn.wallpapers.fm
cdn.weathertab-api.info
cdn.weathertab.info
cdn.weathertab.org
cdn.weathertabsearch-cdn.org
cdn.websearchextension-cdn.com
cdn.websearchextension.com
cdn.websearchextension.info
cdn.wikideals-cdn.com
cdn.wikideals.com
cdn.yahoorecipesearch-cdn.com
cdn.yahoorecipesearch.com
cdn.yahootab-cdn.com
Other domains in certificate