76/100 SECURITY SCORE

Certificate Information

Subject
CN=groveletteringco.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026 57 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:1E:A0:AA:56:C2:F7:2D:BD:19:02:42:9C:BC:0C:10:6C:09:D9:1E:38:35:E0:B3:0C:7D:6D:80:1A:DB:1B:F6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
winecellarsoftware.com *.winecellarsoftware.com

Other domains in certificate

3udof248.com *.3udof248.com
americascup.com.au *.americascup.com.au
bonder.com.au *.bonder.com.au
businessinnovation.com.au *.businessinnovation.com.au
canberragyms.com.au *.canberragyms.com.au
carboneutral.com.au *.carboneutral.com.au
carpetflooringworld.com *.carpetflooringworld.com
chauffer.com.au *.chauffer.com.au
chimneycleaners.au *.chimneycleaners.au
*.dialoggroup.diana.com.au diana.com.au *.diana.com.au *.ftp2.diana.com.au *.inte.diana.com.au *.mx2.diana.com.au *.www-verification.diana.com.au *.zaccountmsa.diana.com.au
editoresindependientes.com *.editoresindependientes.com
federaljobs.au *.federaljobs.au
ffpjp.net *.ffpjp.net
fundraisingevents.com.au *.fundraisingevents.com.au
gamingchairs.au *.gamingchairs.au
gourmet.au *.gourmet.au
groundcoffee.au *.groundcoffee.au
groveletteringco.com *.groveletteringco.com
hcmasters2021.com *.hcmasters2021.com
hspyy.cc *.hspyy.cc
inboxdeals.au *.inboxdeals.au
isimbi.com *.isimbi.com
mobosquare.org *.mobosquare.org
moldremoval.au *.moldremoval.au
multimeter.au *.multimeter.au
narcotic.au *.narcotic.au
netfreight.com.au *.netfreight.com.au
pizzadienst.com *.pizzadienst.com
postads.au *.postads.au
rencontresmusicalesdevezelay.com *.rencontresmusicalesdevezelay.com
renewablesolutions.com.au *.renewablesolutions.com.au
rgf.com.au *.rgf.com.au
schoolbackpack.com.au *.schoolbackpack.com.au
semiconductor.com.au *.semiconductor.com.au
smsmg.co *.smsmg.co
snuggleblanket.co.nz *.snuggleblanket.co.nz
sydneybeach.au *.sydneybeach.au
symonsvalleyranch.com *.symonsvalleyranch.com
taxdepreciation.au *.taxdepreciation.au
tempagencies.au *.tempagencies.au
vicjudgments.com.au *.vicjudgments.com.au