Cached · just now
79/100 SECURITY SCORE

Certificate Information

Subject
C=US, ST=California, L=San Jose, O=Adobe Systems Incorporated, CN=secure6s.scene7.com
Issuer
C=US, O=DigiCert Inc, CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1
Valid From
August 29, 2025
Valid Until
August 28, 2026 244 days
Public Key
ECDSA 256 bit (P-256) Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
08:B5:A0:BD:0D:5E:E2:49:2C:A4:FF:87:0F:14:4A:68:37:98:48:D9:46:11:64:35:B7:42:F4:56:D2:FA:32:AD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

77 domains
media.iqos.com

Other domains in certificate

dynamicmedia.accenture.com
smartimaging-capgemini.adobesandbox.com
dm.agcocorp.com
m.ahstatic.com
www.media.aig.com
dm.cms.aldi.cx
dam.amag-group.ch
assets.anthem.com
assets.anz.co.nz
s7-images.armstrongceilings.com
dynamicmedia.audemarspiguet.com
cms-assets.bajajfinserv.in
resource.bakerdist.com
images.blackberry.com
resource.carrierenterprise.com
images.cenpac.fr
multimedia.cibc.com
assets.coherent.com
assets.datacom.com
mediastorage.db.com
devmedia.deloitte.com media.deloitte.com qamedia.deloitte.com stagemedia.deloitte.com
media-cdc.dior.com
media.web.dnb.no
resource.ecmdi.com
media.genpt.com
assets.healthpartners.com
dynamic-assets.hitachi-powergrids.com
ifbdm.ifbappliances.com
media.indeed.com
images.jpg.fr
images.kalamazoo.es
images.keurig.com
bandq.katalog.kfplc.com
images.kirklands.com
assets.langhamhotels.com
assets.moethennessy.com
images.mondoffice.com
images.national-hardware.com
dm-assets.dev.navyfederal.org
images.novonordisk.com
resource.peirce.com
assets.providence.org
images.raja.fr
assets.realmadrid.com
media.riyadhair.com
media.roche-bobois.com
images.rubbermaid.com
images-us.samsung.com
secure6s.scene7.com
assets.sgproof.com
s7.shawfloors.com
dm-assets.skoda-auto.com
s7.future.smart.com
assets.solventum.com
media.soprasteria.com
assets.southernglazers.com
dmassets.speedway.com
images.subd.com
media.techem.com
dynamicmedia.telstra.com.au stage.dynamicmedia.telstra.com.au
images.tervis.com
images.underarmour.com
scene7.vailresorts.com
assets.vineyardvines.com
s7media.vitaminshoppe.com
assets.volvo.com
scene7.waitrosecellar.com
scene7.waitroseflorist.com
images.weiserlock.com
images.wolfermans.com
images.xout.com
assets.zs.com