Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tls.automattic.com
Issuer
C=US, O=Google Trust Services, CN=WR1
Valid From
April 23, 2026
Valid Until
July 22, 2026
69 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:08:CF:20:E0:8C:ED:D6:40:4F:1A:E4:BA:25:E1:8B:C4:24:AC:70:4E:1B:EC:31:84:60:2E:3A:57:7E:79:6E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
50 domains
danielmmoore.com
www.danielmmoore.com
www.againorway.com
alfamarinegreece.com
tls.automattic.com
www.bensboardsolutions.nl
www.bonjourarnab.com
buecheratlas.com
centralboxing.com
charleskurtinitisjr.link
www.charleskurtinitisjr.link
www.commonground-oxford.com
www.cristinaamarilla.com
www.dentsbyizzy.com
www.drinkingoutloud.net
www.elementsofnaturenow.com
www.emgametal.com
fenlandorchardsproject.org
www.flemingj.mobi
www.fliek.com
fliesenleger-ruszala.com
www.flif.org
flightpath.blog
www.flightpath.blog
flightsofashion.com
www.flightsofashion.com
flightsoffour18.com
www.flightsoffour18.com
flimcrickets.com
flintmuniresearch.org
flippedmind.com
heartcrystalhealing.com
la-redemption.com
www.la-redemption.com
militarytrainingsupport.com
www.militarytrainingsupport.com
www.mindfulzone.co.uk
nothinginterestingstudios.com
www.nothinginterestingstudios.com
oilfieldinsights.com
patriciagraciano.com
raising-the-modern-fae.com
www.shapiroarbitration.com
www.spiritandquartz.ca
www.stephenhgallo.com
www.thought-bytes.com
www.truthtomormons.com
turochamp.org
www.turochamp.org
www.valueswings.com
Other domains in certificate