76/100 SECURITY SCORE

Certificate Information

Subject
CN=merchamazon.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 16, 2026
Valid Until
April 16, 2026 58 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:BB:28:05:FC:28:96:E1:9E:43:54:77:2F:39:A9:FF:C0:FE:A9:AA:A8:80:94:80:04:45:74:E7:C6:33:0C:9F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
makeaposteronline.com *.makeaposteronline.com *.affiliates.makeaposteronline.com *.beta.makeaposteronline.com *.fr.makeaposteronline.com *.gmail.makeaposteronline.com *.iutnb.makeaposteronline.com *.jobs.makeaposteronline.com *.love.makeaposteronline.com *.ssl.makeaposteronline.com *.static.makeaposteronline.com *.videos.makeaposteronline.com *.ww25.makeaposteronline.com

Other domains in certificate

abehiroshi.org *.abehiroshi.org *.ww25.abehiroshi.org
dda.com.pl *.dda.com.pl *.dev.dda.com.pl *.hostmaster.dda.com.pl
constructionjobs084683.icu *.constructionjobs084683.icu
*.chidem.devkz.com *.com.devkz.com *.damian.devkz.com devkz.com *.devkz.com *.fmanager.devkz.com *.herbshouse.devkz.com *.isabel.devkz.com *.phoenix.devkz.com *.pspoelder.devkz.com *.reich.devkz.com *.sruly.devkz.com
enclyclopedia.com *.enclyclopedia.com *.es.enclyclopedia.com *.ww17.enclyclopedia.com *.ww25.enclyclopedia.com
evolution-boats.co.uk *.evolution-boats.co.uk
faws6.com *.faws6.com
*.abilities.hotline.miami *.from.hotline.miami hotline.miami *.hotline.miami *.io.hotline.miami *.like.hotline.miami *.ww25.hotline.miami *.ww38.hotline.miami
*.data.lansedaohang.club *.dev.lansedaohang.club *.development.lansedaohang.club *.hostmaster.lansedaohang.club *.hotfix.lansedaohang.club *.imbxfww38.lansedaohang.club *.jenkins.lansedaohang.club lansedaohang.club *.lansedaohang.club *.poc.lansedaohang.club *.uat.lansedaohang.club *.wildcard.lansedaohang.club *.ww.lansedaohang.club *.ww25.lansedaohang.club
matirxprinzip.de *.matirxprinzip.de
*.app.merchamazon.com *.mail.merchamazon.com merchamazon.com *.merchamazon.com *.remote.merchamazon.com *.webdisk.merchamazon.com *.webmail.merchamazon.com
*.mail.mila-model.com mila-model.com *.mila-model.com *.static.mila-model.com *.wildcard.mila-model.com *.ww38.mila-model.com
puppyclassesnearby322562.icu *.puppyclassesnearby322562.icu
survey.au *.survey.au *.wa.survey.au
*.cum.todaddy.com *.random.todaddy.com *.static.todaddy.com todaddy.com *.todaddy.com