Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bom1012.love
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:EE:E5:82:4D:98:9A:90:F4:BB:24:DD:73:59:5A:94:FB:9C:62:CB:83:05:7A:6B:33:74:D8:14:37:26:33:DF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
87 domains
cfoshieldpartners.com
*.cfoshieldpartners.com
bom1012.love
*.bom1012.love
bruvix.com
*.bruvix.com
buenretiro.it
*.buenretiro.it
buonirisparmio.it
*.buonirisparmio.it
busteecologiche.it
*.busteecologiche.it
caldofreddo.it
*.caldofreddo.it
cantinevinicole.it
*.cantinevinicole.it
capoufficio.it
*.capoufficio.it
cc2.it
*.cc2.it
codice-fiscale.it
*.codice-fiscale.it
collaro.it
*.collaro.it
conservativa.it
*.conservativa.it
cooke.it
*.cooke.it
coze.it
*.coze.it
cranston.it
*.cranston.it
cutitout.it
*.cutitout.it
dedal.it
*.dedal.it
deepone.it
*.deepone.it
demet.it
*.demet.it
divinazione.it
*.divinazione.it
doglive.it
*.doglive.it
e5495825.vip
*.e5495825.vip
ecotoursitop.com
*.ecotoursitop.com
elettroshock.it
*.elettroshock.it
escalate.it
*.escalate.it
even.it
*.even.it
examples.it
*.examples.it
expomilanohotels.it
*.expomilanohotels.it
firas.it
*.firas.it
fitnessy.it
*.fitnessy.it
fnitruaronieasdalywise.shop
*.fnitruaronieasdalywise.shop
fodi.it
*.fodi.it
fooddiary.it
*.fooddiary.it
formulo.it
*.formulo.it
forsen.it
*.forsen.it
fortino.it
*.fortino.it
ginz.it
*.ginz.it
glav.it
*.glav.it
jintzexpress.co.uk
*.jintzexpress.co.uk
*.admin.wemloloanprocessorsetlement.com
*.app.wemloloanprocessorsetlement.com
*.portal.wemloloanprocessorsetlement.com
*.shop.wemloloanprocessorsetlement.com
*.vpn.wemloloanprocessorsetlement.com
wemloloanprocessorsetlement.com
*.wemloloanprocessorsetlement.com
Other domains in certificate