Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=autocrations.site
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:9D:0B:A6:B3:26:DA:E5:47:79:4C:DE:BC:BB:5A:1F:C3:C9:0C:4D:85:5F:76:E0:1F:86:C1:CB:37:0B:44:54
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
miacademia.com
*.miacademia.com
*.api.miacademia.com
*.webmail.miacademia.com
*.ww17.miacademia.com
airaddg7.site
*.airaddg7.site
aleamertone.site
*.aleamertone.site
angegardien.online
*.angegardien.online
aplikacja.store
*.aplikacja.store
autocrations.site
*.autocrations.site
autumnshakespeare.site
*.autumnshakespeare.site
babyshop-dz.store
*.babyshop-dz.store
dnaclarity.com
*.dnaclarity.com
*.rd.dnaclarity.com
*.rds.dnaclarity.com
*.rdweb.dnaclarity.com
*.store.dnaclarity.com
*.testing.dnaclarity.com
*.webdisk.dnaclarity.com
dyme.store
*.dyme.store
english-onloine.at
*.english-onloine.at
kokosnusscreme.de
*.kokosnusscreme.de
*.forecast.martika.it
martika.it
*.martika.it
mathlab.com.au
*.mathlab.com.au
minuszinskredit.de
*.minuszinskredit.de
mtsv.de
*.mtsv.de
mybeautify.online
*.mybeautify.online
nmdstore.online
*.nmdstore.online
nnke.de
*.nnke.de
pa-anlage.de
*.pa-anlage.de
peaceloveandchocolate.biz
*.peaceloveandchocolate.biz
phobos.website
*.phobos.website
racerslibrary.com.au
*.racerslibrary.com.au
rans288e.vip
*.rans288e.vip
*.ww38.rans288e.vip
raylene.com.au
*.raylene.com.au
symptomspice.top
*.symptomspice.top
synx.pw
*.synx.pw
taixiu.pw
*.taixiu.pw
un-casa.org
*.un-casa.org
voicepayments.com
*.voicepayments.com
*.hostmaster.witherick.com
*.portal.witherick.com
*.saipemsa-purchasehostmaster.witherick.com
*.secureaccess.witherick.com
*.web.witherick.com
witherick.com
*.witherick.com
xn--lebkuchengewrz-rsb.de
*.xn--lebkuchengewrz-rsb.de
*.mailserver.ymuio.com
ymuio.com
*.ymuio.com
*.2ww25.yw91.com
*.38.yw91.com
*.comwww.yw91.com
*.facebook.yw91.com
*.ww25.yw91.com
yw91.com
*.yw91.com
Other domains in certificate