79/100 SECURITY SCORE

Certificate Information

Subject
CN=postiza.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C9:A5:B8:16:F5:1B:47:63:A6:1F:35:48:70:DA:ED:B0:71:22:73:9D:76:F7:A6:AB:B3:54:D7:17:10:04:4E:92
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
righttoolrightprice.com *.righttoolrightprice.com

Other domains in certificate

91avi05.com *.91avi05.com *.random.91avi05.com *.ww53.91avi05.com
*.39b920d7-5bc9-4f80-8a8c-5fc759419117.advanceautoaprts.com advanceautoaprts.com *.advanceautoaprts.com *.store.advanceautoaprts.com *.ww25.advanceautoaprts.com *.ww43.advanceautoaprts.com
calcwiki.com *.calcwiki.com
*.belgium.firstaif.info firstaif.info *.firstaif.info *.integration.firstaif.info *.ww38.firstaif.info
funtubs.com *.funtubs.com *.ww25.funtubs.com
gaysex.click *.gaysex.click *.hostmaster.gaysex.click *.www.gaysex.click
meumundo.com *.meumundo.com *.us.meumundo.com *.ww1.meumundo.com
*.mail.postiza.com postiza.com *.postiza.com
propertymaintenanceservice.com *.propertymaintenanceservice.com
prostitutkisterlitamaka.com *.prostitutkisterlitamaka.com
qgpiz.gdn *.qgpiz.gdn
quizhpi.com *.quizhpi.com
rachael.net *.rachael.net
raffleseducation.com *.raffleseducation.com
rallyinthevalley.com *.rallyinthevalley.com
ranesh.com *.ranesh.com
rebelgossiptalk.live *.rebelgossiptalk.live
rgbhz0i.cyou *.rgbhz0i.cyou
ribatejo.com *.ribatejo.com
rightscripts.com *.rightscripts.com
riotto.com *.riotto.com
rlrl6rw.cyou *.rlrl6rw.cyou
rumputlaut.com *.rumputlaut.com
sadiyah.com *.sadiyah.com
sadya.com *.sadya.com
saltspreader.com *.saltspreader.com
samsala.com *.samsala.com
schlemme.com *.schlemme.com
*.admin.solutionmanuals.net *.b4963ac9-71f6-4f5b-80c3-a6912f73b2f4.solutionmanuals.net *.dash.solutionmanuals.net *.dashboard.solutionmanuals.net *.mail.solutionmanuals.net *.metric.solutionmanuals.net *.notexistsww2.solutionmanuals.net *.notexistsww38.solutionmanuals.net solutionmanuals.net *.solutionmanuals.net *.superset.solutionmanuals.net *.vpn.solutionmanuals.net *.ww38.solutionmanuals.net
*.ww25.xhy35.xyz *.ww38.xhy35.xyz xhy35.xyz *.xhy35.xyz