Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=*.wabg.com
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M03
Valid From
June 09, 2025
Valid Until
July 08, 2026
151 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F4:1B:ED:F5:E6:1A:17:28:57:93:33:2D:BD:42:2A:CD:4C:E2:C8:61:67:8B:A5:2C:80:D1:D5:49:0F:43:26:E2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Weak
upgrade-insecure-requests
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
96 domains
wftv.com
*.wftv.com
wabg.com
*.wabg.com
wape.com
*.wape.com
waxntv.com
*.waxntv.com
wbab.com
*.wbab.com
wbli.com
*.wbli.com
wdbo.com
*.wdbo.com
wduv.com
*.wduv.com
wedr.com
*.wedr.com
wftvalexa.com
*.wftvalexa.com
wftvapps.com
*.wftvapps.com
wftvnewsapp.com
*.wftvnewsapp.com
wftvweatherapp.com
*.wftvweatherapp.com
wgauradio.com
*.wgauradio.com
whio.com
*.whio.com
whioalexa.com
*.whioalexa.com
whioapps.com
*.whioapps.com
whionewsapp.com
*.whionewsapp.com
whiotv.com
*.whiotv.com
whioweatherapp.com
*.whioweatherapp.com
wjaxapps.com
*.wjaxapps.com
wjaxnewsapp.com
*.wjaxnewsapp.com
wjaxweatherapp.com
*.wjaxweatherapp.com
wmmo.com
*.wmmo.com
wokv.com
*.wokv.com
wpxi-tv.com
*.wpxi-tv.com
wpxi.com
*.wpxi.com
wpxiapps.com
*.wpxiapps.com
wpxinewsapp.com
*.wpxinewsapp.com
wpxiwakeup.com
*.wpxiwakeup.com
wpyo.com
*.wpyo.com
wsbradio.com
*.wsbradio.com
wsbtv.com
*.wsbtv.com
wsbtvapps.com
*.wsbtvapps.com
wsbtvnewsapp.com
*.wsbtvnewsapp.com
wsbtvweatherapp.com
*.wsbtvweatherapp.com
wsoc-tv.com
*.wsoc-tv.com
wsocalexa.com
*.wsocalexa.com
wsoctv.com
*.wsoctv.com
wsoctvapps.com
*.wsoctvapps.com
wsoctvnewsapp.com
*.wsoctvnewsapp.com
wsoctvweatherapp.com
*.wsoctvweatherapp.com
x1029.com
*.x1029.com
x1065.com
*.x1065.com
x995jax.com
*.x995jax.com
y100fm.com
*.y100fm.com
your704.com
*.your704.com
yourgeorgiacountry.com
*.yourgeorgiacountry.com
Other domains in certificate