Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=golfonapoli.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
28:07:CC:85:D2:6E:63:4A:73:56:8C:1D:3E:83:90:41:43:FF:66:FA:36:EB:F9:2B:1B:A5:D6:EB:E5:F9:E6:41
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ilgioco.it
*.ilgioco.it
golfonapoli.it
*.golfonapoli.it
googlesri.network
*.googlesri.network
gumo.it
*.gumo.it
gyetruaroniiosdaltion.cyou
*.gyetruaroniiosdaltion.cyou
healtylife.it
*.healtylife.it
hgahl.net
*.hgahl.net
hitclub.rugby
*.hitclub.rugby
hockeyleague.it
*.hockeyleague.it
homeplanning.it
*.homeplanning.it
hotcam.it
*.hotcam.it
icittadini.it
*.icittadini.it
impeccabili.it
*.impeccabili.it
imperium.it
*.imperium.it
indiainternationalinsurance.in
*.indiainternationalinsurance.in
internettelephony.it
*.internettelephony.it
invisible-braces-en-near-clinic.click
*.invisible-braces-en-near-clinic.click
itsmylife.it
*.itsmylife.it
jetboat.it
*.jetboat.it
kicamandie.com
*.kicamandie.com
krouq.bid
*.krouq.bid
kupitattestat.top
*.kupitattestat.top
ldldslf363.icu
*.ldldslf363.icu
learningcoins.com
*.learningcoins.com
lens-codeninja.net
*.lens-codeninja.net
listingsmichigan.com
*.listingsmichigan.com
lockedin.it
*.lockedin.it
locks.io
*.locks.io
lucky.gift
*.lucky.gift
malina.it
*.malina.it
maluch.it
*.maluch.it
mzgmi.tv
*.mzgmi.tv
occhiazzurri.it
*.occhiazzurri.it
officejob.it
*.officejob.it
palladiumboot.com
*.palladiumboot.com
peakfitnessquest.run
*.peakfitnessquest.run
polimetrica.it
*.polimetrica.it
pool-gate-job-agent-di.click
*.pool-gate-job-agent-di.click
postaprotetta.it
*.postaprotetta.it
poultryequipment.in
*.poultryequipment.in
reservists.it
*.reservists.it
reunionexperts.com
*.reunionexperts.com
rochesternails.com
*.rochesternails.com
rondobet.info
*.rondobet.info
satiric.it
*.satiric.it
Other domains in certificate