Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=amrsydney.com.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
58 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:D3:6B:C6:3F:D4:26:24:EA:76:28:5D:F5:9C:9F:22:BC:95:8B:AD:40:24:4A:0B:C4:24:79:F2:71:05:99:B9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sendplus.it
*.sendplus.it
*.ml.sendplus.it
*.webdisk.sendplus.it
a345yyq.top
*.a345yyq.top
*.sbhqd.a345yyq.top
*.32.amrsydney.com.au
*.alpha.amrsydney.com.au
amrsydney.com.au
*.amrsydney.com.au
*.analytic.amrsydney.com.au
*.analytics.amrsydney.com.au
*.argo.amrsydney.com.au
*.beta.amrsydney.com.au
*.ci.amrsydney.com.au
*.dash.amrsydney.com.au
*.data.amrsydney.com.au
*.demo.amrsydney.com.au
*.development.amrsydney.com.au
*.hotfix.amrsydney.com.au
*.integration.amrsydney.com.au
*.kafka.amrsydney.com.au
*.mail.amrsydney.com.au
*.movies.amrsydney.com.au
*.poc.amrsydney.com.au
*.preprod.amrsydney.com.au
*.preview.amrsydney.com.au
*.prod.amrsydney.com.au
*.production.amrsydney.com.au
*.qa.amrsydney.com.au
*.random.amrsydney.com.au
*.report.amrsydney.com.au
*.reporting.amrsydney.com.au
*.sandbox.amrsydney.com.au
*.staging.amrsydney.com.au
*.superset.amrsydney.com.au
*.test.amrsydney.com.au
*.track.amrsydney.com.au
*.uat.amrsydney.com.au
australianlawyersdirectory.au
*.australianlawyersdirectory.au
*.ww84.australianlawyersdirectory.au
bento123a.com
*.bento123a.com
bittvortex.com
*.bittvortex.com
blendsonic.com
*.blendsonic.com
bnjvq.gdn
*.bnjvq.gdn
hshphost.com
*.hshphost.com
investopia.vip
*.investopia.vip
*.api.leges.it
*.app.leges.it
*.backend.leges.it
*.butimportantpoliticalandlegalprivi-v.leges.it
*.data.leges.it
*.dev.leges.it
*.forecast.leges.it
*.hostmaster.leges.it
*.intel.leges.it
*.l6.leges.it
leges.it
*.leges.it
*.politicalandlegalprivi-v.leges.it
*.privi-v.leges.it
*.privi.leges.it
*.remote.leges.it
*.reports.leges.it
*.staging.leges.it
*.v.leges.it
*.com.signin.au
*.ee.signin.au
*.eu.signin.au
*.gov.signin.au
*.lv.signin.au
*.mygov.signin.au
*.provider.signin.au
*.se.signin.au
signin.au
*.signin.au
sxrsyny.com
*.sxrsyny.com
tattoo-removal-7j3v7y6l0r6.sbs
*.tattoo-removal-7j3v7y6l0r6.sbs
tits.photos
*.tits.photos
Other domains in certificate