Cached · 2h ago
76/100 SECURITY SCORE

Certificate Information

Subject
CN=thedreamery.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 04, 2026
Valid Until
July 03, 2026 30 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
52:3C:DD:81:5C:C0:DE:A4:F4:0A:F5:2E:98:5D:39:C0:BF:9B:D1:27:7D:42:07:44:81:05:41:D2:FE:45:B1:89
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
videoeditor.it *.videoeditor.it *.app.videoeditor.it *.backend.videoeditor.it *.pop3.videoeditor.it

Other domains in certificate

7081x.xyz *.7081x.xyz *.ww25.7081x.xyz
*.api.automazioneesicurezza.it automazioneesicurezza.it *.automazioneesicurezza.it
azgsulgfakux.com *.azgsulgfakux.com
bizifunds.com *.bizifunds.com *.ww25.bizifunds.com *.ww38.bizifunds.com
*.api.bottoming.com *.app.bottoming.com bottoming.com *.bottoming.com
childrensfurniture.com.au *.childrensfurniture.com.au
connectbyafam.com *.connectbyafam.com
factorio.studio *.factorio.studio
*.dev-api.fertilitystories.com fertilitystories.com *.fertilitystories.com *.vpn.fertilitystories.com *.wx.fertilitystories.com
*.autoconfig.findteacher.it *.autodiscover.findteacher.it findteacher.it *.findteacher.it *.mail.findteacher.it
gloriet.com *.gloriet.com *.tv.gloriet.com
goldwell.au *.goldwell.au
*.gli.guiascore.click *.glicostop.guiascore.click guiascore.click *.guiascore.click *.sitemaps.guiascore.click
jav6.app *.jav6.app
*.3nxyc.paintflix.xyz *.95vhx.paintflix.xyz *.fdy0p.paintflix.xyz *.jyikv.paintflix.xyz *.o7p4x.paintflix.xyz paintflix.xyz *.paintflix.xyz *.z44ag.paintflix.xyz
sciammarella.com *.sciammarella.com
solcard.tech *.solcard.tech
*.presale.spacepay.co spacepay.co *.spacepay.co
*.admin.thecollection.it *.staging.thecollection.it thecollection.it *.thecollection.it *.www.thecollection.it
*.link.thedowry.co thedowry.co *.thedowry.co *.ww25.thedowry.co
thedreamery.com.au *.thedreamery.com.au
*.cpcalendars.ultimateseotools.site *.cpcontacts.ultimateseotools.site *.in.ultimateseotools.site ultimateseotools.site *.ultimateseotools.site *.webdisk.ultimateseotools.site *.webmail.ultimateseotools.site
xilong.cc *.xilong.cc
ykonewave.com *.ykonewave.com
*.vpn.zalovip.net *.www.zalovip.net zalovip.net *.zalovip.net