Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tls.automattic.com
Issuer
C=US, O=Google Trust Services, CN=WR1
Valid From
March 29, 2026
Valid Until
June 27, 2026
86 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AA:FC:C7:AA:E2:C2:55:B9:22:38:48:95:C2:E5:8F:0D:E8:6F:F3:A9:7F:02:53:64:0C:8E:8A:90:07:E7:09:72
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
32 domains
martinoneri.it
www.martinoneri.it
tls.automattic.com
grzybowisko.pl
www.grzybowisko.pl
mariewhite.life
www.mariewhite.life
www.mavisiondumonde.fr
monaco-international-triathlon.com
www.monaco-international-triathlon.com
one-drawing-a.day
www.one-drawing-a.day
renmediamgmt.com
www.renmediamgmt.com
www.saba.house
www.sam-gerard.com
scienceaide.com
www.scienceaide.com
www.selftitledtrack.blog
sociedadedocopo.com
www.sociedadedocopo.com
www.stupidlysensitive.blog
taylorcurtishamilton.com
www.taylorcurtishamilton.com
tazekozmetik.com
www.tazekozmetik.com
tbtmethod.com
therestisvino.com
www.therestisvino.com
walterbright.net
www.walterbright.net
warcrows.in
Other domains in certificate