Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=vulcan.conde.digital
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
September 25, 2025
Valid Until
October 24, 2026
298 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:40:03:39:F5:0F:11:C1:CF:5E:D3:20:DA:72:B5:36:BF:75:F2:1E:DF:C9:79:DF:C2:21:39:9F:1C:D7:79:D1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
69 domains
media.wired.com
media.es.wired.com
media-assets.ad-italia.it
assets.ad-magazin.de
media.admagazine.com
media.admagazine.fr
media.admiddleeast.com
media.allure.com
media.architecturaldigest.com
assets.architecturaldigest.in
assets.bonappetit.com
media.cntraveler.com
media.cntraveller.com
media.cntraveller.de
assets.cntraveller.in
media.cntravellerme.com
media.gq.com.tw
media.vogue.com.tw
vulcan.conde.digital
assets.epicurious.com
media.glamour.com
assets.glamour.de
media.glamour.es
media.glamour.mx
media.glamourmagazine.co.uk
media.gq-magazin.de
media.gq-magazine.co.uk
media.gq-me.com
media.gq.com
media.gq.com.mx
assets.gqindia.com
media.gqitalia.it
media.gqjapan.jp
media.gqmagazine.fr
media.gqmiddleeast.com
media.houseandgarden.co.uk
media.lacucinaitaliana.com
media-assets.lacucinaitaliana.it
media.newyorker.com
media.pitchfork.com
media.revistaad.es
media.revistagq.com
media.revistavanityfair.es
media.self.com
media.tatler.com
assets.teenvogue.com
media.them.us
media.traveler.es
media.vanityfair.com
media.vanityfair.fr
media-assets.vanityfair.it
media.vogue.co.jp
media.vogue.co.uk
assets.vogue.com
media.vogue.de
media.vogue.es
media.vogue.fr
assets.vogue.in
compass-media.vogue.it
media.vogue.mx
media.ar.voguearabia.com
media.voguearabia.com
media.voguebusiness.com
media.voguemiddleeast.com
media.wired.co.uk
media-assets.wired.it
media.wired.jp
media.wired.me
media.worldofinteriors.com
Other domains in certificate