Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=seasoned.com.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 07, 2026
Valid Until
April 07, 2026
46 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:AC:C0:41:E6:35:45:AB:C3:0A:A8:29:ED:F3:62:2E:91:41:F8:F8:1D:CE:62:78:CA:5D:96:96:C5:BE:4B:23
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
boyqs.com
*.boyqs.com
19yowww.com
*.19yowww.com
88-chinese-restaurant.com
*.88-chinese-restaurant.com
afmasa.com
*.afmasa.com
*.mail.afmasa.com
*.mx.afmasa.com
ashmer.com
*.ashmer.com
beckyhillweddings.com
*.beckyhillweddings.com
bttfstore.com
*.bttfstore.com
bullmet.com
*.bullmet.com
*.js.bullmet.com
caferacers.com.au
*.caferacers.com.au
cannon.support
*.cannon.support
*.hostmaster.cannon.support
casca-aaa-2019.com
*.casca-aaa-2019.com
*.random.casca-aaa-2019.com
constanip.com
*.constanip.com
correspondent24.info
*.correspondent24.info
*.mailhost.correspondent24.info
dkslotsbet.com
*.dkslotsbet.com
*.ww25.dkslotsbet.com
docam.xyz
*.docam.xyz
drumstickcollector.com
*.drumstickcollector.com
*.random.drumstickcollector.com
e-trucks.com.au
*.e-trucks.com.au
ecoproducts.com.au
*.ecoproducts.com.au
erotic-area.net
*.erotic-area.net
fascinate.com.au
*.fascinate.com.au
goldcoastfamilylaw.com.au
*.goldcoastfamilylaw.com.au
holymotorsfilm.com
*.holymotorsfilm.com
hophitnews.ru
*.hophitnews.ru
*.hostmaster.hophitnews.ru
justcreative.au
*.justcreative.au
*.random.justcreative.au
*.hostmaster.lendingtere.com
lendingtere.com
*.lendingtere.com
lolita.com.au
*.lolita.com.au
pavilionbrands.com.au
*.pavilionbrands.com.au
peanutbutterthoughts.com
*.peanutbutterthoughts.com
quantora.co
*.quantora.co
seasoned.com.au
*.seasoned.com.au
southtown101.net
*.southtown101.net
steinhart.com.au
*.steinhart.com.au
*.random.tanhuazu.cc
tanhuazu.cc
*.tanhuazu.cc
*.ww1.tanhuazu.cc
thenomadengineer.com
*.thenomadengineer.com
tsfp7.org
*.tsfp7.org
wallspaceseattle.com
*.wallspaceseattle.com
*.catalog.wamart.cm
wamart.cm
*.wamart.cm
winemaking.au
*.winemaking.au
Other domains in certificate