Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hightechstore.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 20, 2026
Valid Until
August 18, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9E:56:31:8F:E4:04:F4:62:7A:1D:E2:38:2B:22:80:E6:E5:FC:E6:A2:8B:13:A5:E3:E7:41:7B:E2:5F:13:83:08
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
fixedrates.it
*.fixedrates.it
*.api.fixedrates.it
*.backend.fixedrates.it
*.demo.fixedrates.it
*.staging.fixedrates.it
198393.one
*.198393.one
*.one.198393.one
*.demo.hightechstore.it
hightechstore.it
*.hightechstore.it
*.staging.hightechstore.it
*.2dc446fe-cde0-43de-8153-38b3362ec208.lye.in
*.3.lye.in
*.apke.lye.in
*.hostmaster.lye.in
*.in.lye.in
*.is.lye.in
*.j.lye.in
lye.in
*.lye.in
*.mo.lye.in
*.mta-sts.lye.in
*.primary.lye.in
*.www.lye.in
*.yceo.lye.in
*.yewa.lye.in
*.22d551fe-dc61-4650-a102-1894a82f7c60.skinz.be
*.admin.skinz.be
*.administration.skinz.be
*.analytics.skinz.be
*.analyze.skinz.be
*.app.skinz.be
*.backend.skinz.be
*.beta.skinz.be
*.bi-beta.skinz.be
*.bi.skinz.be
*.billing.skinz.be
*.chart.skinz.be
*.ci.skinz.be
*.cloud.skinz.be
*.dash.skinz.be
*.dashboard-alpha.skinz.be
*.dashboard.skinz.be
*.dashboards.skinz.be
*.demo.skinz.be
*.dev-analytics.skinz.be
*.dev-dash.skinz.be
*.dev.skinz.be
*.dnhuxyunvudashboard.skinz.be
*.email.skinz.be
*.eydxddashboards.skinz.be
*.home.skinz.be
*.hotfix.skinz.be
*.integration.skinz.be
*.intel.skinz.be
*.intelligence.skinz.be
*.jenkins.skinz.be
*.m.skinz.be
*.metrics.skinz.be
*.minio.skinz.be
*.news.skinz.be
*.pipeline.skinz.be
*.prod.skinz.be
*.production.skinz.be
*.rd.skinz.be
*.rds.skinz.be
*.rdweb.skinz.be
*.remote.skinz.be
*.report-hotfix.skinz.be
*.report-preprod.skinz.be
*.report-production.skinz.be
*.report.skinz.be
skinz.be
*.skinz.be
*.staging-cicd.skinz.be
*.staging.skinz.be
*.superset.skinz.be
*.supersets.skinz.be
*.support.skinz.be
*.user.skinz.be
*.visualizations.skinz.be
*.web.skinz.be
*.ww.skinz.be
*.ww1.skinz.be
*.www.skinz.be
*.www5.skinz.be
Other domains in certificate