Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=b2ec40932e809cbb.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DA:88:21:34:C7:DD:2F:8E:C7:B9:FF:56:87:3D:86:00:D6:1A:7D:9F:5E:B7:0E:33:4C:15:C4:7B:95:28:D2:78
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
chatragazze.it
*.chatragazze.it
b2ec40932e809cbb.com
*.b2ec40932e809cbb.com
carbonnet.xyz
*.carbonnet.xyz
careerboosttips.xyz
*.careerboosttips.xyz
cataract-medical-id-3nd.click
*.cataract-medical-id-3nd.click
chillen.it
*.chillen.it
cincinnatibengalsbook.com
*.cincinnatibengalsbook.com
cnsdc.net
*.cnsdc.net
construction-lawyer-385208019.click
*.construction-lawyer-385208019.click
contico.it
*.contico.it
cordon.it
*.cordon.it
countrywedding.it
*.countrywedding.it
couponsite.it
*.couponsite.it
creamshop.com
*.creamshop.com
czv71.top
*.czv71.top
datingadviceexpert.org
*.datingadviceexpert.org
dgtradinggroup.info
*.dgtradinggroup.info
difa.it
*.difa.it
digitalforex.it
*.digitalforex.it
dipping.it
*.dipping.it
diyprojectshub.xyz
*.diyprojectshub.xyz
dokil.biz
*.dokil.biz
dropship.monster
*.dropship.monster
easy-call.it
*.easy-call.it
*.notexistsremoteaccess.easy-call.it
ecovoyagertop.com
*.ecovoyagertop.com
ek458.top
*.ek458.top
elabonga.com
*.elabonga.com
elegantweddingsbliss.beauty
*.elegantweddingsbliss.beauty
escrow.ws
*.escrow.ws
essencedrink.com
*.essencedrink.com
etsystems.co
*.etsystems.co
europeen.it
*.europeen.it
exitescaperoom.it
*.exitescaperoom.it
explicamecomo.com
*.explicamecomo.com
failureanalysis.it
*.failureanalysis.it
fb68bet.top
*.fb68bet.top
fb88rm.com
*.fb88rm.com
fczdbj.bid
*.fczdbj.bid
fin-hub.com
*.fin-hub.com
financial-accounting-course.click
*.financial-accounting-course.click
findme-now.live
*.findme-now.live
kaste.it
*.kaste.it
kdmp3.co
*.kdmp3.co
kodomo.it
*.kodomo.it
Other domains in certificate