Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=elementum.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 07, 2026
Valid Until
May 08, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CF:6B:32:D2:90:29:F3:A7:95:14:FA:3D:84:AD:39:74:13:61:A8:49:F8:97:04:AB:DF:D3:E1:96:81:E2:5E:55
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
ango.net
*.ango.net
*.beta.ango.net
*.preprod.ango.net
*.sandbox.ango.net
*.uat.ango.net
*.ww25.ango.net
72556600.com
*.72556600.com
*.admin.72556600.com
*.erp.72556600.com
*.gkzsutest.72556600.com
*.intranet.72556600.com
*.rds.72556600.com
*.rdweb.72556600.com
*.store.72556600.com
*.test.72556600.com
*.vpn.72556600.com
bestbangladeshgame.com
*.bestbangladeshgame.com
*.blog.bestbangladeshgame.com
*.sitemap.bestbangladeshgame.com
beyondcreativityug.com
*.beyondcreativityug.com
*.chaos.beyondcreativityug.com
*.clients.beyondcreativityug.com
*.clinic.beyondcreativityug.com
*.farm.beyondcreativityug.com
*.fay.beyondcreativityug.com
*.fresh.beyondcreativityug.com
*.freshdiary.beyondcreativityug.com
*.hotel.beyondcreativityug.com
*.hotels.beyondcreativityug.com
*.jseason.beyondcreativityug.com
*.meatup.beyondcreativityug.com
*.new.beyondcreativityug.com
*.newsletter.beyondcreativityug.com
*.online.beyondcreativityug.com
*.onlineshop.beyondcreativityug.com
*.radio.beyondcreativityug.com
*.resort.beyondcreativityug.com
*.rima.beyondcreativityug.com
*.seeds.beyondcreativityug.com
*.sendea.beyondcreativityug.com
*.shop.beyondcreativityug.com
*.temp.beyondcreativityug.com
*.travel.beyondcreativityug.com
*.travels.beyondcreativityug.com
*.correo.elementum.it
elementum.it
*.elementum.it
*.mail3.elementum.it
fotokabin.com
*.fotokabin.com
*.gw.fotokabin.com
*.rdp.fotokabin.com
*.alozhka.good88bet.info
*.avito.good88bet.info
*.b4f19e56-6a81-4196-80df-be08a0365ad3.good88bet.info
*.cdek.good88bet.info
*.d28dec1e-c63e-48d3-9cb7-0d43215498c9.good88bet.info
*.go.good88bet.info
good88bet.info
*.good88bet.info
*.ito.good88bet.info
*.pochtabank.good88bet.info
*.sber.good88bet.info
*.www.good88bet.info
*.yandex.good88bet.info
lojasetorhomem.com
*.lojasetorhomem.com
*.seguro.lojasetorhomem.com
*.www.lojasetorhomem.com
*.2.myfloridalisence.com
myfloridalisence.com
*.myfloridalisence.com
*.backup.oceanprotocol.life
oceanprotocol.life
*.oceanprotocol.life
*.assets.pueblonuevo.com
pueblonuevo.com
*.pueblonuevo.com
riniavy.com
*.riniavy.com
*.server.riniavy.com
*.www.riniavy.com
scientistlikeme.org
*.scientistlikeme.org
*.ww16.scientistlikeme.org
Other domains in certificate