Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=postiza.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C9:A5:B8:16:F5:1B:47:63:A6:1F:35:48:70:DA:ED:B0:71:22:73:9D:76:F7:A6:AB:B3:54:D7:17:10:04:4E:92
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
righttoolrightprice.com
*.righttoolrightprice.com
91avi05.com
*.91avi05.com
*.random.91avi05.com
*.ww53.91avi05.com
*.39b920d7-5bc9-4f80-8a8c-5fc759419117.advanceautoaprts.com
advanceautoaprts.com
*.advanceautoaprts.com
*.store.advanceautoaprts.com
*.ww25.advanceautoaprts.com
*.ww43.advanceautoaprts.com
calcwiki.com
*.calcwiki.com
*.belgium.firstaif.info
firstaif.info
*.firstaif.info
*.integration.firstaif.info
*.ww38.firstaif.info
funtubs.com
*.funtubs.com
*.ww25.funtubs.com
gaysex.click
*.gaysex.click
*.hostmaster.gaysex.click
*.www.gaysex.click
meumundo.com
*.meumundo.com
*.us.meumundo.com
*.ww1.meumundo.com
*.mail.postiza.com
postiza.com
*.postiza.com
propertymaintenanceservice.com
*.propertymaintenanceservice.com
prostitutkisterlitamaka.com
*.prostitutkisterlitamaka.com
qgpiz.gdn
*.qgpiz.gdn
quizhpi.com
*.quizhpi.com
rachael.net
*.rachael.net
raffleseducation.com
*.raffleseducation.com
rallyinthevalley.com
*.rallyinthevalley.com
ranesh.com
*.ranesh.com
rebelgossiptalk.live
*.rebelgossiptalk.live
rgbhz0i.cyou
*.rgbhz0i.cyou
ribatejo.com
*.ribatejo.com
rightscripts.com
*.rightscripts.com
riotto.com
*.riotto.com
rlrl6rw.cyou
*.rlrl6rw.cyou
rumputlaut.com
*.rumputlaut.com
sadiyah.com
*.sadiyah.com
sadya.com
*.sadya.com
saltspreader.com
*.saltspreader.com
samsala.com
*.samsala.com
schlemme.com
*.schlemme.com
*.admin.solutionmanuals.net
*.b4963ac9-71f6-4f5b-80c3-a6912f73b2f4.solutionmanuals.net
*.dash.solutionmanuals.net
*.dashboard.solutionmanuals.net
*.mail.solutionmanuals.net
*.metric.solutionmanuals.net
*.notexistsww2.solutionmanuals.net
*.notexistsww38.solutionmanuals.net
solutionmanuals.net
*.solutionmanuals.net
*.superset.solutionmanuals.net
*.vpn.solutionmanuals.net
*.ww38.solutionmanuals.net
*.ww25.xhy35.xyz
*.ww38.xhy35.xyz
xhy35.xyz
*.xhy35.xyz
Other domains in certificate