Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=simplystunning.com.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 15, 2026
Valid Until
May 16, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B6:59:F7:5D:55:52:66:B3:B0:2B:C7:F0:AB:AD:AA:E9:60:4F:F2:20:FF:D8:CD:E5:43:42:F7:05:A0:F8:79:E6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
weakstrems.com *.weakstrems.com *.random.weakstrems.com

Other domains in certificate

31078.app *.31078.app
*.asbnews.asbtoday.com asbtoday.com *.asbtoday.com *.astroscience.asbtoday.com *.c3564b706cea.asbtoday.com *.deals.asbtoday.com *.dehradun.asbtoday.com *.desinews.asbtoday.com *.directory.asbtoday.com *.english.asbtoday.com *.epaper.asbtoday.com *.grampanchayat.asbtoday.com *.helpdesk.asbtoday.com *.listfeed.asbtoday.com *.marriage.asbtoday.com *.merriage.asbtoday.com *.muzaffarnagar.asbtoday.com *.period.asbtoday.com *.random.asbtoday.com *.sex.asbtoday.com *.ww25.asbtoday.com
beachwalk.au *.beachwalk.au
kartonbardak.com *.kartonbardak.com
*.app.lavorobenessere.it lavorobenessere.it *.lavorobenessere.it *.networkmarketing.lavorobenessere.it
*.access.lommel.com *.admin.lommel.com *.anyconnect.lommel.com *.api.lommel.com *.cloud.lommel.com *.cpanel.lommel.com *.cpcontacts.lommel.com *.crm.lommel.com *.dev.lommel.com *.drvpn.lommel.com *.exchange.lommel.com *.ford.lommel.com *.gate.lommel.com *.gp.lommel.com *.hostmaster.lommel.com *.imap.lommel.com lommel.com *.lommel.com *.mail.lommel.com *.mvideo.lommel.com *.myapps1.lommel.com *.ra.lommel.com *.rd1.lommel.com *.relay.lommel.com *.remote.lommel.com *.secure.lommel.com *.sitemaps.lommel.com *.smtp.lommel.com *.ssl1.lommel.com *.ts1.lommel.com *.webdisk.lommel.com *.webmail.lommel.com *.webvpn.lommel.com *.workspace1.lommel.com *.ww17.lommel.com *.ww5.lommel.com
*.mail.simplystunning.com.au *.outlook.simplystunning.com.au simplystunning.com.au *.simplystunning.com.au *.wildcard.simplystunning.com.au
*.email.uniformist.com *.hostmaster.uniformist.com *.m.uniformist.com *.mail.uniformist.com *.portail.uniformist.com uniformist.com *.uniformist.com *.ww1.uniformist.com *.ww16.uniformist.com *.ww17.uniformist.com *.ww25.uniformist.com *.ww38.uniformist.com
*.api.xfarr.com xfarr.com *.xfarr.com