Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=smartpuglia.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 31, 2026
Valid Until
June 29, 2026
48 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
25:F7:42:3A:1E:D8:D5:3A:BC:E0:93:DF:FA:C8:9D:72:B7:D7:15:43:3C:31:3C:53:89:55:BF:00:08:E0:AE:22
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
kuca.it
*.kuca.it
*.api.kuca.it
*.dashboards.kuca.it
561899.sbs
*.561899.sbs
baza.life
*.baza.life
*.gov.baza.life
*.ww25.baza.life
cheapkitchens.au
*.cheapkitchens.au
elevations.au
*.elevations.au
entourchat.com
*.entourchat.com
*.hostmaster.entourchat.com
filmstreaming1.buzz
*.filmstreaming1.buzz
*.m.filmstreaming1.buzz
hanbadarealty.com
*.hanbadarealty.com
*.ci.howtoclaimasettlement-guide.site
howtoclaimasettlement-guide.site
*.howtoclaimasettlement-guide.site
*.pipeline.howtoclaimasettlement-guide.site
*.superset.howtoclaimasettlement-guide.site
*.www.howtoclaimasettlement-guide.site
*.3d1917e0-a89f-44f5-b4b4-8b4c10d51327.i9betting.co
i9betting.co
*.i9betting.co
liquorlicences.com.au
*.liquorlicences.com.au
*.random.liquorlicences.com.au
*.lord000s.lordfilm.fans
lordfilm.fans
*.lordfilm.fans
*.mr.lordfilm.fans
masterbulk.biz
*.masterbulk.biz
mdkhairstudio.com
*.mdkhairstudio.com
*.ww38.mdkhairstudio.com
*.www.mdkhairstudio.com
*.aansy.normalizing.com
*.blog.normalizing.com
*.ebay.normalizing.com
*.emets.normalizing.com
normalizing.com
*.normalizing.com
*.remote.normalizing.com
pavimentiparquet.it
*.pavimentiparquet.it
*.www.pavimentiparquet.it
pornoham-a1.com
*.pornoham-a1.com
powersprayjet.com
*.powersprayjet.com
*.admin.smartpuglia.it
*.api.smartpuglia.it
*.app.smartpuglia.it
*.backend.smartpuglia.it
*.dashboards.smartpuglia.it
*.dashs.smartpuglia.it
*.demo.smartpuglia.it
*.forecast.smartpuglia.it
*.report.smartpuglia.it
*.research.smartpuglia.it
smartpuglia.it
*.smartpuglia.it
spiky.com.au
*.spiky.com.au
*.138907.taishaninter.tech
*.471853.taishaninter.tech
*.729358.taishaninter.tech
taishaninter.tech
*.taishaninter.tech
taxslovenia.eu
*.taxslovenia.eu
*.lifestyle.thecentralwire.com
thecentralwire.com
*.thecentralwire.com
threepillars.au
*.threepillars.au
tradition.today
*.tradition.today
vilareal.it
*.vilareal.it
villainmod.store
*.villainmod.store
Other domains in certificate