76/100 SECURITY SCORE

Certificate Information

Subject
CN=postalexamweb.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 20, 2026
Valid Until
June 18, 2026 41 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:CF:0C:A9:22:20:CA:F5:3D:CE:01:F5:E2:ED:A7:20:01:AA:14:7A:EC:8A:AF:11:39:F3:C4:6B:06:D5:47:51
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
igttesting.com *.igttesting.com *.dns.igttesting.com *.hostmaster.igttesting.com *.mx7.igttesting.com *.ww38.igttesting.com

Other domains in certificate

anthropolgies.com *.anthropolgies.com
apy.de *.apy.de *.yun-probiother.apy.de
benefice.org *.benefice.org *.cleobury.benefice.org *.www.benefice.org
blog-voxpopuli.org *.blog-voxpopuli.org *.ww38.blog-voxpopuli.org
bosses.com.au *.bosses.com.au
bushregisteration.co.uk *.bushregisteration.co.uk *.ww25.bushregisteration.co.uk
centurilink.com *.centurilink.com
crd-international.com *.crd-international.com *.hostmaster.crd-international.com *.ww25.crd-international.com *.www.crd-international.com
danazol.de *.danazol.de
diamondhaven.com *.diamondhaven.com
fih.cz *.fih.cz
formulagroove.com *.formulagroove.com
*.autodiscover.il-bordello.co.nz *.cpanel.il-bordello.co.nz *.hostmaster.il-bordello.co.nz il-bordello.co.nz *.il-bordello.co.nz *.mail.il-bordello.co.nz *.webdisk.il-bordello.co.nz *.webmail.il-bordello.co.nz *.ww16.il-bordello.co.nz *.www.il-bordello.co.nz
*.blog102.jahad.com jahad.com *.jahad.com *.ww1.jahad.com
mandatoryretirement.com *.mandatoryretirement.com
minebydesignartstudio.com *.minebydesignartstudio.com
nenaet.com *.nenaet.com *.ww12.nenaet.com
petcentre.au *.petcentre.au
*.ffffffffffff.postalexamweb.com *.hostmaster.postalexamweb.com postalexamweb.com *.postalexamweb.com *.staging.postalexamweb.com *.www.postalexamweb.com *.zxchain.postalexamweb.com
*.preview.ravine.pro ravine.pro *.ravine.pro
*.tmgd.tuisag.com tuisag.com *.tuisag.com *.ww16.tuisag.com
*.job.xn--brse-5qa.com *.www.xn--brse-5qa.com xn--brse-5qa.com *.xn--brse-5qa.com
xxo.au *.xxo.au
*.iwww.xydhtv.com *.nqwbyww25.xydhtv.com *.random.xydhtv.com *.store.xydhtv.com *.ww25.xydhtv.com *.ww38.xydhtv.com xydhtv.com *.xydhtv.com