76/100 SECURITY SCORE

Certificate Information

Subject
CN=burgessmarketing.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 15, 2026
Valid Until
April 15, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
70:57:D7:AB:E9:75:B8:6F:B4:F2:8C:8F:51:FB:43:0B:74:56:29:51:88:65:56:72:9D:83:C1:C7:B0:3C:0B:85
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
epthotels.com *.epthotels.com *.com.epthotels.com *.cqbdri.epthotels.com *.liguiping.epthotels.com *.mailx.epthotels.com *.www.epthotels.com

Other domains in certificate

bankersarenotborn.com *.bankersarenotborn.com *.ww25.bankersarenotborn.com
biohunt.com *.biohunt.com *.dan.biohunt.com *.hostmaster.biohunt.com
burgessmarketing.com.au *.burgessmarketing.com.au
diamondcontract.com *.diamondcontract.com *.qatools.diamondcontract.com *.ww17.diamondcontract.com *.ww38.diamondcontract.com
guthrie.au *.guthrie.au *.ww25.guthrie.au
harlanclarkegiftcard.com *.harlanclarkegiftcard.com *.ww38.harlanclarkegiftcard.com
homesteading.au *.homesteading.au *.mailserver.homesteading.au *.random.homesteading.au
*.admin.hotmoies.com *.charge.hotmoies.com *.dash.hotmoies.com *.demo2.hotmoies.com hotmoies.com *.hotmoies.com *.media.hotmoies.com *.members.hotmoies.com *.s.hotmoies.com *.ww10.hotmoies.com *.ww2.hotmoies.com *.www-1.hotmoies.com
*.cat.i728.com i728.com *.i728.com *.magento.i728.com *.play.i728.com *.pp.i728.com *.reporter.i728.com *.sandbox.i728.com *.travel.i728.com *.ww17.i728.com
*.aa.lltt122.top *.aaa.lltt122.top *.bb.lltt122.top *.bbb.lltt122.top *.cc.lltt122.top *.ccc.lltt122.top *.dd.lltt122.top *.ddd.lltt122.top *.ee.lltt122.top *.eee.lltt122.top lltt122.top *.lltt122.top
shopfredsegal.com *.shopfredsegal.com *.ww38.shopfredsegal.com
sunwinsam.com *.sunwinsam.com *.ww16.sunwinsam.com
*.api.widore.com *.staging.widore.com widore.com *.widore.com *.ww38.widore.com
*.m14.ylhudlm.com *.m19.ylhudlm.com *.m20.ylhudlm.com *.m24.ylhudlm.com *.m27.ylhudlm.com *.m3.ylhudlm.com *.m37.ylhudlm.com *.m39.ylhudlm.com *.m40.ylhudlm.com *.m41.ylhudlm.com *.m42.ylhudlm.com ylhudlm.com *.ylhudlm.com