Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tls.automattic.com
Issuer
C=US, O=Google Trust Services, CN=WR1
Valid From
May 07, 2026
Valid Until
August 05, 2026
89 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D5:A8:AD:7F:63:67:02:D3:39:AD:2C:10:E6:5D:E0:07:0F:DD:67:F8:BC:B0:5D:FD:2A:BF:C6:2A:DE:06:D7:92
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
51 domains
renchupipe.com
www.renchupipe.com
831pawdyguardrescue.org
www.831pawdyguardrescue.org
alfonsocarvajal.com
www.alfonsocarvajal.com
angsilva.com
tls.automattic.com
conversion-stud.io
www.dataupgrader.com
drbaferguson.com
ecom-rerestrinkets.shop
www.ecom-rerestrinkets.shop
emotionenverbinden.ch
www.emotionenverbinden.ch
enhancedlifecounseling.org
www.enhancedlifecounseling.org
firmsconsulting.com
www.firmsconsulting.com
hamalitepleven.com
solairco.instawp.app
www.cyberblogue.lapresse.ca
lexav971.blog
www.lexav971.blog
messagemarketingandcommunications.com
mrnoobot.com
www.musicashispanoafroamericanas.com
musingsofamuddledmind.com
www.musingsofamuddledmind.com
www.myfirsttesla.de
mynbpt.com
www.mynbpt.com
okamotolab.com
www.okamotolab.com
www.parti-des-travailleurs-01.fr
blog.podbean.com
www.polygraphica.blog
portarlingtoncommunitycentre.com
www.portarlingtoncommunitycentre.com
positiveconsultingfze.com
www.positiveconsultingfze.com
www.rabbleholdings.com
ragazzaincontri.com
www.ragazzaincontri.com
redwhiteandbabies.com
www.screenagewasteland.com
seamusbruner.com
www.seamusbruner.com
seasongpublications.com
www.seasongpublications.com
sky-petrol.com
Other domains in certificate