85/100 SECURITY SCORE

Certificate Information

Subject
C=US, ST=California, L=Redwood City, O=Oracle Corporation, CN=www-legacy-4.oracle.com
Issuer
C=US, O=DigiCert Inc, CN=DigiCert Global G3 TLS ECC SHA384 2020 CA1
Valid From
November 05, 2025
Valid Until
November 05, 2026 364 days
Public Key
ECDSA 256 bit (P-256) Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
CD:20:A6:C9:16:6D:F5:B4:4B:28:12:BC:11:FF:F7:C3:44:FA:BA:F0:BC:86:AD:99:AC:E0:89:D1:FC:7A:8F:E6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

98 domains
smartercx.com www.smartercx.com

Other domains in certificate

aconex.com blog.aconex.com www.aconex.com
adiinsights.com www.adiinsights.com
bigmachines.com blog.bigmachines.com blogs.bigmachines.com expresshelp.bigmachines.com info.bigmachines.com support.bigmachines.com www.bigmachines.com
helpdesk.bitzermobile.com
conject.com support.conject.com
crowdtwist.com developers.crowdtwist.com www.crowdtwist.com
databaseworld.com www.databaseworld.com
assure1.federos.com federos.com sso.federos.com support.federos.com www.federos.com
foex.at www.foex.at
go.java.com
blogs.java.net community.java.net forums.java.net java-champions.java.net today.java.net weblogs.java.net
javaone.com www.javaone.com
learnjde.com www.learnjde.com
go.logfire.com logfire.com www.logfire.com
markie-awards.com www.markie-awards.com
markieawards.com www.markieawards.com
markvhurd.com www.markvhurd.com
maxymiser.co www.maxymiser.co
maxymiser.de www.maxymiser.de
blog.maxymiser.fr maxymiser.fr www.maxymiser.fr
helpdesk.micros-fidelio.co.uk
citrix.micros-retail.com mrohcitrix.micros-retail.com
usc.micros.com
support.micros.it
www.moat.com www.pro.moat.com
support.monolith-software.com
blog.opower.com opower.com www.opower.com
bugzilla.oracle.com campus.oracle.com code.oracle.com communities.oracle.com etrm.oracle.com outreach.oracle.com www-legacy-4.oracle.com
oraclecloud.com www.oraclecloud.com
oraclecloudworld.com www.oraclecloudworld.com
oracledatabaseworld.com www.oracledatabaseworld.com
oracledatacloud.com www.oracledatacloud.com
oraclepressbooks.com www.oraclepressbooks.com
selectminds.com www.selectminds.com
sparklinedata.com www.sparklinedata.com
uat2.submittalexchange.com
java.sun.com lightyear.sun.com shop.sun.com www.sun.com
secure.tekelec.com
twa.torex.com
www.vocado.com
blog.wercker.com www.wercker.com