Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=mindfulfitnessjourney.run
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 73 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
11:CF:43:F3:2F:1D:56:AC:74:0B:A3:EC:5E:94:49:43:9A:FD:73:4B:C0:A4:FE:24:8C:00:70:EE:BB:D2:58:2E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
clude.it *.clude.it

Other domains in certificate

colesandcoconsulting.com *.colesandcoconsulting.com
colloquilavoro.it *.colloquilavoro.it
columbushomebuilder.com *.columbushomebuilder.com
comhaja.com *.comhaja.com
computerandphone.it *.computerandphone.it
conservativecountry.org *.conservativecountry.org
costumidabagno.com *.costumidabagno.com
countless.it *.countless.it
couse.it *.couse.it
cransite.net *.cransite.net
cricri.it *.cricri.it
criminal-attorney-435604121.click *.criminal-attorney-435604121.click
culinaryinstituteofethiopia.com *.culinaryinstituteofethiopia.com
cursos-seguridad-cibernetica-cr.click *.cursos-seguridad-cibernetica-cr.click
dadi2k.cc *.dadi2k.cc
dailymed.it *.dailymed.it
danteverse.com *.danteverse.com
deals-184263253.click *.deals-184263253.click
deraq.xyz *.deraq.xyz
gamecheat.it *.gamecheat.it
gcash-ph.art *.gcash-ph.art
gennarogattuso.it *.gennarogattuso.it
gentlemonster.vip *.gentlemonster.vip
getthesign.com *.getthesign.com
gfyvbrvm129.com *.gfyvbrvm129.com
gipershop.xyz *.gipershop.xyz
gitmu.com *.gitmu.com
glamourweddingfiesta.beauty *.glamourweddingfiesta.beauty
goodbus.it *.goodbus.it
gorgeousvacationsites.xyz *.gorgeousvacationsites.xyz
grandmotherbridedresses774425.icu *.grandmotherbridedresses774425.icu
greenlights.it *.greenlights.it
gripeai.com *.gripeai.com
groundworkmarketing.com *.groundworkmarketing.com
grouptravelspecials.live *.grouptravelspecials.live
gsmo8wp.cyou *.gsmo8wp.cyou
guardiegiurate.it *.guardiegiurate.it
handoff.it *.handoff.it
happenjim2erp.org *.happenjim2erp.org
hb7afs5.cyou *.hb7afs5.cyou
comtrad.it.com *.comtrad.it.com
mindfulfitnessjourney.run *.mindfulfitnessjourney.run
modesunrise.com *.modesunrise.com
mrr66.top *.mrr66.top