76/100 SECURITY SCORE

Certificate Information

Subject
CN=estatelawyer.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 31, 2025
Valid Until
March 31, 2026 51 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:56:F0:E4:6A:8B:38:B9:D6:76:62:D3:B5:CA:26:0E:06:4D:B0:FE:EB:0E:86:1C:61:D2:10:F4:1D:5B:71:C1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
logishipping.com *.logishipping.com *.ai.logishipping.com *.pay.logishipping.com

Other domains in certificate

127mall02.com *.127mall02.com *.25.127mall02.com *.ipwww.127mall02.com
askmid.uk *.askmid.uk
azurearmadillo.online *.azurearmadillo.online *.backup.azurearmadillo.online *.ftp2.azurearmadillo.online *.mx01.azurearmadillo.online
bolishes.com *.bolishes.com
bushbands.au *.bushbands.au
cchh7.cc *.cchh7.cc
deutschlandcaard.de *.deutschlandcaard.de *.store.deutschlandcaard.de
*.clickwatch.draf.site *.dating.draf.site *.dirgal.draf.site draf.site *.draf.site *.eventlive.draf.site *.koropak.draf.site *.ngejo.draf.site *.oneclick.draf.site *.sportfile.draf.site *.streamsport.draf.site *.vveiv05khq.draf.site *.watchlive.draf.site *.watchstream.draf.site *.webmail.draf.site
estatelawyer.au *.estatelawyer.au
extraction.au *.extraction.au
gcub.org *.gcub.org *.m.gcub.org *.wildcard.gcub.org *.ww1.gcub.org *.www.gcub.org
globalentrydoors.com *.globalentrydoors.com *.test.globalentrydoors.com *.video.globalentrydoors.com
goldenbridgepottery.com *.goldenbridgepottery.com *.ww25.goldenbridgepottery.com
halibut.com.au *.halibut.com.au *.ww16.halibut.com.au *.ww25.halibut.com.au *.ww38.halibut.com.au
hinterhof.studio *.hinterhof.studio
ladylelekrumbgallery.com *.ladylelekrumbgallery.com
lungingunified.com *.lungingunified.com
naughtycostumes.com.au *.naughtycostumes.com.au *.random.naughtycostumes.com.au
onlineloan.au *.onlineloan.au
pdfenglish.com *.pdfenglish.com *.random.pdfenglish.com
*.ajt.rencanakerja.com *.home.rencanakerja.com *.m.rencanakerja.com rencanakerja.com *.rencanakerja.com *.ww25.rencanakerja.com *.ww38.rencanakerja.com
tarokatya.online *.tarokatya.online *.ww16.tarokatya.online
thechatagallery.com *.thechatagallery.com
*.download.wearesoccerupdates.com wearesoccerupdates.com *.wearesoccerupdates.com