Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tls.automattic.com
Issuer
C=US, O=Let's Encrypt, CN=E7
Valid From
March 06, 2026
Valid Until
June 04, 2026
33 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
BE:72:A4:4A:E9:32:16:04:C2:DB:93:05:AA:27:1E:3F:53:5C:27:C2:69:C4:1D:34:A3:ED:F4:B8:E1:61:94:45
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
51 domains
drbaferguson.com
831pawdyguardrescue.org
www.831pawdyguardrescue.org
alfonsocarvajal.com
www.alfonsocarvajal.com
angsilva.com
tls.automattic.com
conversion-stud.io
www.dataupgrader.com
emotionenverbinden.ch
www.emotionenverbinden.ch
firmsconsulting.com
www.firmsconsulting.com
hamalitepleven.com
solairco.instawp.app
www.cyberblogue.lapresse.ca
lexav971.blog
www.lexav971.blog
messagemarketingandcommunications.com
mrnoobot.com
www.musicashispanoafroamericanas.com
musingsofamuddledmind.com
www.musingsofamuddledmind.com
www.myfirsttesla.de
mynbpt.com
www.mynbpt.com
okamotolab.com
www.okamotolab.com
www.parti-des-travailleurs-01.fr
blog.podbean.com
www.polygraphica.blog
portarlingtoncommunitycentre.com
www.portarlingtoncommunitycentre.com
positiveconsultingfze.com
www.positiveconsultingfze.com
www.propolishdetailing.com
ragazzaincontri.com
www.ragazzaincontri.com
renchupipe.com
www.renchupipe.com
resonate.tech
www.screenagewasteland.com
seamusbruner.com
www.seamusbruner.com
seasongpublications.com
www.seasongpublications.com
sky-petrol.com
www.sky-petrol.com
www.soberintherain.com
soltanhuseynoglu.blog
www.soltanhuseynoglu.blog
Other domains in certificate