Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=atam.org.es
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 29, 2026
Valid Until
April 29, 2026
78 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1A:35:A1:B6:25:8F:A5:F0:0B:D9:73:1F:87:99:D8:65:FE:83:7F:2A:54:8F:30:A8:02:5A:C1:5A:22:B2:38:C3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
alabamabrand.com
*.alabamabrand.com
052908.buzz
*.052908.buzz
10414.locker
*.10414.locker
203990.vip
*.203990.vip
25279.locker
*.25279.locker
32973.loan
*.32973.loan
388454.vip
*.388454.vip
407569.me
*.407569.me
55166.loan
*.55166.loan
560749.vip
*.560749.vip
67212.top
*.67212.top
70580.top
*.70580.top
728435.top
*.728435.top
73120.top
*.73120.top
732316.top
*.732316.top
733742.top
*.733742.top
74705.top
*.74705.top
75071.top
*.75071.top
753215.top
*.753215.top
83389.loan
*.83389.loan
999962.fyi
*.999962.fyi
aaasnetwork.com
*.aaasnetwork.com
aaiwaccelerate.com
*.aaiwaccelerate.com
aaiwignite.com
*.aaiwignite.com
accountingcareerguru.com
*.accountingcareerguru.com
alapalapit.com
*.alapalapit.com
albanyinjurylaw.com
*.albanyinjurylaw.com
australiaposttracking.com
*.australiaposttracking.com
aygunhotels.com
*.aygunhotels.com
bandnmortgage.com
*.bandnmortgage.com
boggycreeklureco.com
*.boggycreeklureco.com
bungalowtuscany.com
*.bungalowtuscany.com
choikclub.com
*.choikclub.com
agroforestry.com.cn
*.agroforestry.com.cn
ahweichuang.com.cn
*.ahweichuang.com.cn
cookmixmingle.com
*.cookmixmingle.com
crackendtr.com
*.crackendtr.com
easyseochecker.com
*.easyseochecker.com
kinuyamachi.com
*.kinuyamachi.com
kym73.top
*.kym73.top
laralandscaping.com
*.laralandscaping.com
melbetbreak.com
*.melbetbreak.com
melbetpicks.com
*.melbetpicks.com
newpinchday.com
*.newpinchday.com
atam.org.es
*.atam.org.es
Other domains in certificate