Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=postalexamweb.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 20, 2026
Valid Until
June 18, 2026
41 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:CF:0C:A9:22:20:CA:F5:3D:CE:01:F5:E2:ED:A7:20:01:AA:14:7A:EC:8A:AF:11:39:F3:C4:6B:06:D5:47:51
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
igttesting.com
*.igttesting.com
*.dns.igttesting.com
*.hostmaster.igttesting.com
*.mx7.igttesting.com
*.ww38.igttesting.com
anthropolgies.com
*.anthropolgies.com
apy.de
*.apy.de
*.yun-probiother.apy.de
benefice.org
*.benefice.org
*.cleobury.benefice.org
*.www.benefice.org
blog-voxpopuli.org
*.blog-voxpopuli.org
*.ww38.blog-voxpopuli.org
bosses.com.au
*.bosses.com.au
bushregisteration.co.uk
*.bushregisteration.co.uk
*.ww25.bushregisteration.co.uk
centurilink.com
*.centurilink.com
crd-international.com
*.crd-international.com
*.hostmaster.crd-international.com
*.ww25.crd-international.com
*.www.crd-international.com
danazol.de
*.danazol.de
diamondhaven.com
*.diamondhaven.com
fih.cz
*.fih.cz
formulagroove.com
*.formulagroove.com
*.autodiscover.il-bordello.co.nz
*.cpanel.il-bordello.co.nz
*.hostmaster.il-bordello.co.nz
il-bordello.co.nz
*.il-bordello.co.nz
*.mail.il-bordello.co.nz
*.webdisk.il-bordello.co.nz
*.webmail.il-bordello.co.nz
*.ww16.il-bordello.co.nz
*.www.il-bordello.co.nz
*.blog102.jahad.com
jahad.com
*.jahad.com
*.ww1.jahad.com
mandatoryretirement.com
*.mandatoryretirement.com
minebydesignartstudio.com
*.minebydesignartstudio.com
nenaet.com
*.nenaet.com
*.ww12.nenaet.com
petcentre.au
*.petcentre.au
*.ffffffffffff.postalexamweb.com
*.hostmaster.postalexamweb.com
postalexamweb.com
*.postalexamweb.com
*.staging.postalexamweb.com
*.www.postalexamweb.com
*.zxchain.postalexamweb.com
*.preview.ravine.pro
ravine.pro
*.ravine.pro
*.tmgd.tuisag.com
tuisag.com
*.tuisag.com
*.ww16.tuisag.com
*.job.xn--brse-5qa.com
*.www.xn--brse-5qa.com
xn--brse-5qa.com
*.xn--brse-5qa.com
xxo.au
*.xxo.au
*.iwww.xydhtv.com
*.nqwbyww25.xydhtv.com
*.random.xydhtv.com
*.store.xydhtv.com
*.ww25.xydhtv.com
*.ww38.xydhtv.com
xydhtv.com
*.xydhtv.com
Other domains in certificate