Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aderenze.it
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 20, 2026
Valid Until
September 18, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:7E:3B:7B:7F:9A:E9:EC:4E:65:F5:44:1B:53:06:3D:52:58:C3:01:C8:B3:8D:9C:A4:00:28:49:57:1C:3E:DB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
chatib.org
*.chatib.org
*.8f84016c-31ed-4627-8b03-a9dd13c3e828.chatib.org
*.app.chatib.org
*.autoconfig.chatib.org
*.autodiscover.chatib.org
*.cpanel.chatib.org
*.cpcontacts.chatib.org
*.dev.chatib.org
*.jenkins.chatib.org
*.m.chatib.org
*.sitemaps.chatib.org
*.webmail.chatib.org
*.whm.chatib.org
*.xbyxvdoudfwebdisk.chatib.org
*.0u12d.566789b.top
*.3nxyc.566789b.top
566789b.top
*.566789b.top
*.ae081913-cb03-4191-b03e-17600a98433d.566789b.top
*.assets.566789b.top
*.demo.566789b.top
*.docs.566789b.top
*.feew6.566789b.top
*.gjdvb.566789b.top
*.media.566789b.top
*.new.566789b.top
*.tzygd.566789b.top
*.y9zz2.566789b.top
aderenze.it
*.aderenze.it
*.api.aderenze.it
*.dev.aderenze.it
*.flow-integration.aderenze.it
*.smtp.aderenze.it
*.2ed641ed-82d4-479c-a639-fa77b878d95f.allpanelexch.bet
*.admin.allpanelexch.bet
allpanelexch.bet
*.allpanelexch.bet
*.backup.allpanelexch.bet
*.dashboard.allpanelexch.bet
*.m.allpanelexch.bet
*.mail.allpanelexch.bet
*.mailer.allpanelexch.bet
*.qa.allpanelexch.bet
*.secure.allpanelexch.bet
*.uat.allpanelexch.bet
*.web.allpanelexch.bet
*.www.allpanelexch.bet
benevolentfund.org
*.benevolentfund.org
*.cloud.benevolentfund.org
*.events.benevolentfund.org
*.m.benevolentfund.org
*.rd.benevolentfund.org
*.sitemaps.benevolentfund.org
chess960.live
*.chess960.live
directasi.com
*.directasi.com
*.g1combr.directasi.com
*.goclick.directasi.com
*.googlie.directasi.com
*.mercadoiivre.directasi.com
*.temp2link.directasi.com
*.tiktokbrasil.directasi.com
*.3fiqb6.essentialexpeditions.live
essentialexpeditions.live
*.essentialexpeditions.live
*.1n9y3p.fhtu8.mom
*.78gd21.fhtu8.mom
*.bimscm.fhtu8.mom
fhtu8.mom
*.fhtu8.mom
*.q80t21.fhtu8.mom
*.vktbed.fhtu8.mom
*.aqlshadmin.kinderpostzegels.vip
*.assets.kinderpostzegels.vip
*.dashboard.kinderpostzegels.vip
*.dev.kinderpostzegels.vip
kinderpostzegels.vip
*.kinderpostzegels.vip
*.test.kinderpostzegels.vip
*.v2.kinderpostzegels.vip
*.vip.kinderpostzegels.vip
*.www.kinderpostzegels.vip
*.zyazubackup.kinderpostzegels.vip
*.8beq2x.w13724610.com
w13724610.com
*.w13724610.com
Other domains in certificate