Open
Cached
·
1h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=additional.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 28, 2026
Valid Until
June 26, 2026
38 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
29:8F:93:14:8F:A1:3D:EC:5B:71:8F:9A:9D:A6:07:14:CF:C4:C1:E7:8C:F2:F2:BD:C3:FA:2B:30:AB:86:21:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
61 domains
unitymagic.com
*.unitymagic.com
additional.com.au
*.additional.com.au
adultsarch.com
*.adultsarch.com
array.com.au
*.array.com.au
bdairtel.com
*.bdairtel.com
beckleybymelissa.com
*.beckleybymelissa.com
betkingshop.com
*.betkingshop.com
beverlysflowersandgifts.com
*.beverlysflowersandgifts.com
blindness.com.au
*.blindness.com.au
charlesshcwab.com
*.charlesshcwab.com
flac24-music.org
*.flac24-music.org
hallandaleapartments.com
*.hallandaleapartments.com
harleyperformance.com.au
*.harleyperformance.com.au
ipadvocate.org
*.ipadvocate.org
issacle.net
*.issacle.net
itoffers.com.au
*.itoffers.com.au
marketonmap.icu
*.marketonmap.icu
mecedes-benz.co.uk
*.mecedes-benz.co.uk
*.ww38.mecedes-benz.co.uk
oooh.com.au
*.oooh.com.au
operatorusa.com
*.operatorusa.com
organizational.design
*.organizational.design
paxkers.com
*.paxkers.com
portland-mongolian-grill-hot-pot.com
*.portland-mongolian-grill-hot-pot.com
roommmates.com
*.roommmates.com
*.cdn.salesar-team.com
salesar-team.com
*.salesar-team.com
*.track.salesar-team.com
shoprobuxviet.com
*.shoprobuxviet.com
spapchat.com
*.spapchat.com
zd.co.za
*.zd.co.za
zira1101.com
*.zira1101.com
Other domains in certificate