Open
Cached
·
just now
85/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tls.automattic.com
Issuer
C=US, O=Let's Encrypt, CN=E7
Valid From
February 28, 2026
Valid Until
May 29, 2026
47 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
54:F2:A3:97:D7:3E:67:9C:13:08:30:EA:CB:F0:A6:07:A5:64:32:73:63:45:07:48:85:9A:EC:DE:07:6E:FF:A2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
51 domains
iot-hackademy.lu
aeliteperformance.com
alessandroberio.it
www.amandamccoyphoto.com
tls.automattic.com
www.axellecolau.fr
beckett.media
beesymmetry.com
www.beloved-not-broken.com
www.bonsulaw.com
chosengems7.com
delaruecrickets.co.uk
www.dreamsdetours.com
www.eastworks.com
www.faithfulparentscoalition.org
www.game-route.com
global-risk-management.com
greatsandybiosphere.org.au
www.initiative-watt-retten.de
josieruff.com
lizzyronk.com
www.lizzyronk.com
lofiaurora.com
www.manningenvironmentallaw.com
manniskohandel.com
manofwy.com
www.manoharpunna.com
manoloraposo.com
www.manonclouzeau.com
www.manonlabrecque.com
www.manontherecord.com
mansikpramarsh.com
www.mantioneavocat.com
www.mantodearesearch.com
mantomurse.com
www.mantomurse.com
mantraestudios.com
www.mantraestudios.com
mantrasdeluz.com
www.mantrasdeluz.com
www.mantrasommerfestival.com
www.mantrik.net
manu-ferrero.com
manualenergy.com
www.manualenergy.com
www.manualeoperativo.com
newclimatejournal.com
www.oakvilleoutdoors.com
votedaveschweitzer.com
www.wandertipsy.com
www.waterbeds.blog
Other domains in certificate