Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=gardensculptures.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 31, 2025
Valid Until
March 31, 2026 34 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D3:C8:2F:62:49:98:1E:B8:88:C4:6A:BF:74:73:0D:47:E9:C0:27:0B:D4:BE:FF:76:59:72:34:61:0D:25:96:C6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

75 domains
clut.com *.clut.com *.dgw.clut.com *.multi.clut.com *.wet.clut.com *.xdouyin.clut.com *.yuese.clut.com

Other domains in certificate

boot.news *.boot.news *.random.boot.news
*.administration.farmaciacr.com *.api2.farmaciacr.com *.applicants.farmaciacr.com *.beta.farmaciacr.com *.borrower.farmaciacr.com *.community.farmaciacr.com *.cpanel.farmaciacr.com *.cpcalendars.farmaciacr.com *.cpcontacts.farmaciacr.com *.customer.farmaciacr.com *.customers.farmaciacr.com *.data.farmaciacr.com *.dev.farmaciacr.com *.devapi.farmaciacr.com *.download.farmaciacr.com *.ezmail.farmaciacr.com farmaciacr.com *.farmaciacr.com *.forum.farmaciacr.com *.forums.farmaciacr.com *.gallery.farmaciacr.com *.gateway.farmaciacr.com *.go.farmaciacr.com *.help.farmaciacr.com *.home.farmaciacr.com *.image.farmaciacr.com *.m.farmaciacr.com *.mail1.farmaciacr.com *.mail2.farmaciacr.com *.mail3.farmaciacr.com *.mail4.farmaciacr.com *.market.farmaciacr.com *.merchant.farmaciacr.com *.mobile.farmaciacr.com *.mx.farmaciacr.com *.mybill.farmaciacr.com *.mypay.farmaciacr.com *.news.farmaciacr.com *.paiement.farmaciacr.com *.panel.farmaciacr.com *.paycenter.farmaciacr.com *.payment.farmaciacr.com *.paytest.farmaciacr.com *.plugin.farmaciacr.com *.preview.farmaciacr.com *.prod.farmaciacr.com *.production.farmaciacr.com *.sandbox.farmaciacr.com *.secure.farmaciacr.com *.secure1.farmaciacr.com *.sitemap.farmaciacr.com *.sitemaps.farmaciacr.com *.touch.farmaciacr.com *.wap.farmaciacr.com *.web.farmaciacr.com *.webdisk.farmaciacr.com *.webmail.farmaciacr.com *.webshop.farmaciacr.com *.www.farmaciacr.com *.wwwtest.farmaciacr.com
gardensculptures.au *.gardensculptures.au *.random.gardensculptures.au
stellenangebote.pro *.stellenangebote.pro