Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=baldilorenzo.it
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 10, 2025
Valid Until
February 08, 2026 43 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
53:7F:A6:EE:4F:4A:8E:44:5E:28:9A:61:0A:BC:D0:2B:DE:9E:C6:6A:27:5B:47:CF:AB:98:D3:45:9E:B2:65:AB
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
bizzybook.app

Other domains in certificate

333droptaxi.in
animeverse.co.za
www.apothekenvertretung.apolido.de
app.arvaishop.mn
atmmilk.in
www.docs.automize.dev
ayanatravels.com
quantumai-demo.azharali.dev
baldilorenzo.it
orbit.beati.app
dev.auth.controladoria.beehus.com.br
bennit.be
bips.live
www.brettseverin.com
carrier.bringly.nl
alpha-apif.bulbulbuy.com
www.chordassist.com
api.calendar.cs.climacell.co
baiti.co.il donate.hafonton.co.il
ludo.codewala.in
www.orisun.com.ng
admin.copyseo.ai
www.cosmic-shores.net
myarms.criteria.co.jp
invite.divebox.app
www.domavax.xyz
edsonurubatan.com.br
cimtcollege.edu.in
track.electrocomet.in
app.escalasmais.com.br
fridayswing.brussels
rmac.gared.fr
gemini-landscaping.com
geovanesilva.com.br
www.good-lifes-all-shop.company
grupofuturo.net
www.healthyfi.ai
doduonghung2417129.id.vn dptrong17051.id.vn dung16897.id.vn duongnguyen2417117.id.vn khanhdb040206.id.vn leminh.id.vn nghiemducanh.id.vn nguyenpvhoang.id.vn phuongptb2400069.id.vn randomstuff.id.vn thanh1307.id.vn
www.indiamandi.in
jomotransportation.com
leaderboard.juicex.co
www.kiwisplit.com
lepetitbourgeon.fr
pdf.lerimas.com
lotushighschool-admin.macademy.in
meditechpma.com
mockover.com
test-msm-portal.moloco.cloud
download.moonrise.com
abc.mrperfectworld.com
beta.murdockbrothers.com
mycotrac.mushroomtales.in
www.myhomi.app
sales.myndrix.com
www.newunionautorepairinc.com
nexron.ai
nuevoalcala.uy
ranipet.onewaytaxiwala.com
app.openfantasia.ai
www.osnetaviation.com
events.ozbuyship.com
www.parrot-labs.com
parsely.co
paylinks.app
pearlceylontours.com
hiperview-dev.realtimeknowledge.com
restauracecernymost.cz
resuranker.com
roomz4sure.co.za
schickebert.de
www.sekerme.com
app.shahbiryani.com
app.shipwithbestinthewest.com
sindicatoicpv.cl
ticket.129th.skkudramaclub.kr
slimlazreg.com
www.snapropertycleaners.com
sonar.fit
ar-card.spacedanta.com
test.teamcompleet.app
www.tec-craft.com
tradenet.top
trongco.pro
emi-calculator.uniquewebdevelopers.in
verilogeditor.com
www.vsindustrial.net
press.weezer.fr
worldunited.gg