Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=tnzjoh3.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 23, 2026
Valid Until
August 21, 2026
66 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
86:F4:8E:0F:78:CB:20:CC:8B:C2:5A:89:12:C1:5E:83:87:F9:2A:B8:11:E8:A0:72:10:97:0A:72:7D:86:4D:CD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
envidia.it
*.envidia.it
*.dashboard.envidia.it
*.data.envidia.it
*.dev.envidia.it
*.email.envidia.it
*.imap.envidia.it
*.mail.envidia.it
*.mx.envidia.it
*.mymail.envidia.it
*.notexistsapi.envidia.it
*.officevpn.envidia.it
*.rdweb.envidia.it
*.report.envidia.it
*.smtp.envidia.it
*.ssl.envidia.it
*.superset.envidia.it
*.webmail.envidia.it
*.apps.bpedia.com
bpedia.com
*.bpedia.com
*.connect.bpedia.com
*.gateway.bpedia.com
*.ra.bpedia.com
*.rdweb.bpedia.com
*.remoto.bpedia.com
*.ssl.bpedia.com
*.vpn.bpedia.com
greenharmony.co
*.greenharmony.co
*.sitemaps.greenharmony.co
*.demo.hedonne.com
*.elo3kzshcb.hedonne.com
*.ftp.hedonne.com
hedonne.com
*.hedonne.com
*.m.hedonne.com
indiahqc.click
*.indiahqc.click
*.preprod.indiahqc.click
*.190c8ce0-7272-4990-991d-496b76deb7d7.sexlanguage.com
*.a.sexlanguage.com
*.admin.sexlanguage.com
*.api.sexlanguage.com
*.app.sexlanguage.com
*.assets.sexlanguage.com
*.backup.sexlanguage.com
*.dashboard.sexlanguage.com
*.demo.sexlanguage.com
*.dev.sexlanguage.com
*.mail.sexlanguage.com
*.mailer.sexlanguage.com
*.marketing.sexlanguage.com
*.qa.sexlanguage.com
*.secure.sexlanguage.com
sexlanguage.com
*.sexlanguage.com
*.stage.sexlanguage.com
*.staging.sexlanguage.com
*.stg.sexlanguage.com
*.test.sexlanguage.com
*.uat.sexlanguage.com
*.v1.sexlanguage.com
*.v2.sexlanguage.com
*.vpn.sexlanguage.com
*.web.sexlanguage.com
*.xtjemdev.sexlanguage.com
*.2643f4ac-8b65-405a-af55-a8a72a5e45e3.smartlink.domains
*.api.smartlink.domains
smartlink.domains
*.smartlink.domains
*.uqgsp0.smartlink.domains
*.go.smav.club
smav.club
*.smav.club
*.www.smav.club
*.8ce283f7.tnzjoh3.top
tnzjoh3.top
*.tnzjoh3.top
*.ffffffffffff.wolflodge.com
*.great.wolflodge.com
*.qa.wolflodge.com
wolflodge.com
*.wolflodge.com
*.ww38.wolflodge.com
*.xn--ww43-976a.wolflodge.com
*.intranet.xn--11t36o.com
*.sitemaps.xn--11t36o.com
xn--11t36o.com
*.xn--11t36o.com
Other domains in certificate