Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=cashback.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 31, 2025
Valid Until
March 31, 2026 50 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0E:B0:31:A6:AB:F8:8E:1F:E6:98:A5:A2:78:71:E8:FF:28:DE:0B:40:4B:2B:D8:D2:17:86:57:DE:91:C5:DD:CF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
cashback.au *.cashback.au *.app.cashback.au *.codenterprise.cashback.au *.demo.cashback.au *.docs.cashback.au *.izpeoqva.cashback.au

Other domains in certificate

6ad86470-fbd7-4754-9e25-419229701005.com *.6ad86470-fbd7-4754-9e25-419229701005.com *.ww25.6ad86470-fbd7-4754-9e25-419229701005.com
accepted.co.za *.accepted.co.za
asicss.site *.asicss.site
*.alfabank.bunrk-albums.io bunrk-albums.io *.bunrk-albums.io *.ww25.bunrk-albums.io
familli.store *.familli.store
frankfurts.com.au *.frankfurts.com.au
holidayextrs.com *.holidayextrs.com
*.cdn.jjavs.com jjavs.com *.jjavs.com *.online.jjavs.com *.torrent.jjavs.com
kholx.com *.kholx.com
lemonadestandchildcare.com *.lemonadestandchildcare.com
musselchangeableskier.com *.musselchangeableskier.com
nzb-matrix.eu *.nzb-matrix.eu *.random.nzb-matrix.eu
onlinegrades.org *.onlinegrades.org
perfectmix.net *.perfectmix.net
pozdravim-tyt.store *.pozdravim-tyt.store
sapphires.com.au *.sapphires.com.au
singleschat.com.au *.singleschat.com.au
spiritualmeaning.site *.spiritualmeaning.site
*.bible.startua.com *.model.startua.com startua.com *.startua.com *.top.startua.com
stocksthatroll.com *.stocksthatroll.com
stringserenadegff.site *.stringserenadegff.site
texaselitepickleballintro.com *.texaselitepickleballintro.com *.ww25.texaselitepickleballintro.com
tropakvariefiskimport.com *.tropakvariefiskimport.com *.ww25.tropakvariefiskimport.com
ubeereats.com *.ubeereats.com
upcrost.site *.upcrost.site
*.random.vinded.de vinded.de *.vinded.de
*.crypto.viudiet.com *.netflix-on.viudiet.com *.random.viudiet.com viudiet.com *.viudiet.com
viventisvitali.online *.viventisvitali.online
warcrymatin2.online *.warcrymatin2.online
wifix-pro.site *.wifix-pro.site
wiflix-mag.site *.wiflix-mag.site
wrenapartments.com *.wrenapartments.com
xujiahe.site *.xujiahe.site