Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=acquarica.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 02, 2026
Valid Until
May 03, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
96:B4:06:38:62:77:8C:79:81:D3:2F:F4:34:03:B9:BE:FA:42:72:03:40:CA:C2:A6:A5:6E:CB:29:F7:47:23:D6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
cerchioni.com
*.cerchioni.com
acquarica.org
*.acquarica.org
acquistadomini.com
*.acquistadomini.com
acquistiamo.com
*.acquistiamo.com
algua.com
*.algua.com
all-chemicals.pl
*.all-chemicals.pl
alltollfree.com
*.alltollfree.com
alquiladespacho.com
*.alquiladespacho.com
amyni.net
*.amyni.net
anticipazione.com
*.anticipazione.com
arturotv.tv
*.arturotv.tv
assistenzatermotecnica.com
*.assistenzatermotecnica.com
*.redash.assistenzatermotecnica.com
attacapan.com
*.attacapan.com
autoaccessori.net
*.autoaccessori.net
automotrici.com
*.automotrici.com
azzee.com
*.azzee.com
betef.pro
*.betef.pro
biurd2wuggafkfv.top
*.biurd2wuggafkfv.top
bjcdz.com
*.bjcdz.com
bjteen.com
*.bjteen.com
bzriv.cc
*.bzriv.cc
carpi.co
*.carpi.co
cda184.org
*.cda184.org
cheradi.com
*.cheradi.com
citisearch.com
*.citisearch.com
coinfox.in
*.coinfox.in
corrieremobile.com
*.corrieremobile.com
countergirded.com
*.countergirded.com
crftl.pro
*.crftl.pro
cristiane.com
*.cristiane.com
daviddewhurst.net
*.daviddewhurst.net
demonianism.com
*.demonianism.com
diviccaro.com
*.diviccaro.com
dsinw.com
*.dsinw.com
dwdtz.tv
*.dwdtz.tv
eaode.pro
*.eaode.pro
elbasilon.com
*.elbasilon.com
falangi.com
*.falangi.com
fgf777.love
*.fgf777.love
filsafat.in
*.filsafat.in
gemoyslot99.org
*.gemoyslot99.org
gestionestudiodentistico.com
*.gestionestudiodentistico.com
halisfax-online.site
*.halisfax-online.site
hh80072.cc
*.hh80072.cc
Other domains in certificate