Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=11900.one
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9A:6A:C3:3F:45:A1:C1:93:D6:90:50:91:EB:36:12:78:E7:D3:3E:94:94:43:D1:38:48:FA:6E:94:18:F9:CF:D9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
collectionmodels.it
*.collectionmodels.it
11900.one
*.11900.one
126985.shop
*.126985.shop
18516.art
*.18516.art
2035.it
*.2035.it
24734.locker
*.24734.locker
48211.it
*.48211.it
50zz.com
*.50zz.com
57680.loans
*.57680.loans
5th.it
*.5th.it
605.it
*.605.it
americas.it
*.americas.it
anaco.it
*.anaco.it
betbra.live
*.betbra.live
betzbr.love
*.betzbr.love
bitcminer.com
*.bitcminer.com
boylost.it
*.boylost.it
brainpool.it
*.brainpool.it
businessexpo.it
*.businessexpo.it
calrndars.com
*.calrndars.com
carcosa.it
*.carcosa.it
carouselchcks.com
*.carouselchcks.com
chas.it
*.chas.it
colorado-obesity-121367991.click
*.colorado-obesity-121367991.click
conquistadehollywood.com
*.conquistadehollywood.com
cypris.it
*.cypris.it
defined.it
*.defined.it
esens.it
*.esens.it
f64379602.com
*.f64379602.com
fuente.it
*.fuente.it
gratton.it
*.gratton.it
guado.it
*.guado.it
hockeyanalyst.com
*.hockeyanalyst.com
houseforrent.it
*.houseforrent.it
ichange.it
*.ichange.it
ildi.it
*.ildi.it
ilnordovest.it
*.ilnordovest.it
indas.it
*.indas.it
infoglobal.it
*.infoglobal.it
intessuto.it
*.intessuto.it
jrosq.academy
*.jrosq.academy
writes.it
*.writes.it
xdhof.pro
*.xdhof.pro
yourauto.it
*.yourauto.it
zhukov.pro
*.zhukov.pro
Other domains in certificate