Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=biomateriali.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4B:D2:41:E1:DA:F6:1E:66:A2:AC:25:78:96:45:DC:1B:4D:07:6A:AA:77:8B:FC:9B:13:6E:F6:D6:CA:9B:A2:B8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
buscher.cc
*.buscher.cc
bettingcua.com
*.bettingcua.com
bilanciofamiliare.it
*.bilanciofamiliare.it
biomateriali.it
*.biomateriali.it
biooil.it
*.biooil.it
bitaimapkz.com
*.bitaimapkz.com
blouse.it
*.blouse.it
blueprint.it
*.blueprint.it
booksshowerknowledge.xyz
*.booksshowerknowledge.xyz
booksthatinspire.live
*.booksthatinspire.live
boostascendagency.com
*.boostascendagency.com
bootcamp.it
*.bootcamp.it
breganze.it
*.breganze.it
bridalcharmfactor.beauty
*.bridalcharmfactor.beauty
brightlights.it
*.brightlights.it
budgettravelideas.live
*.budgettravelideas.live
budgetvacationideas.live
*.budgetvacationideas.live
builder-project-management-software-2.cfd
*.builder-project-management-software-2.cfd
buildingcredit.it
*.buildingcredit.it
canlicasinoo2.com
*.canlicasinoo2.com
capitoli.it
*.capitoli.it
captivatingfoodjourney.food
*.captivatingfoodjourney.food
car-transport-326135485.click
*.car-transport-326135485.click
careerpathblaze.xyz
*.careerpathblaze.xyz
careerplanahead.xyz
*.careerplanahead.xyz
celtkicks.com
*.celtkicks.com
cherry-marmalade.org
*.cherry-marmalade.org
ciam-report-951217556.click
*.ciam-report-951217556.click
ckb.it
*.ckb.it
clubhype.io
*.clubhype.io
fortison.com
*.fortison.com
*.remote.fortison.com
freeheirlomseeds.org
*.freeheirlomseeds.org
freenight.it
*.freenight.it
freshfoodquest.food
*.freshfoodquest.food
frotto.pro
*.frotto.pro
fundcash.xyz
*.fundcash.xyz
gads.it
*.gads.it
galeriadeparis.com
*.galeriadeparis.com
ganza.it
*.ganza.it
gdjinghua.com
*.gdjinghua.com
gesundheits-netzwerk.org
*.gesundheits-netzwerk.org
ghavp.bid
*.ghavp.bid
ghmjzbc352.vip
*.ghmjzbc352.vip
girirajispat.com
*.girirajispat.com
Other domains in certificate