Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=conson.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 12, 2026
Valid Until
May 13, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A2:C6:E3:53:40:F5:DA:88:56:08:9F:0F:77:C6:EF:D7:29:E8:67:09:1E:14:1F:E4:14:4C:45:DF:3D:3C:C7:C7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
conson.it
*.conson.it
*.mail.conson.it
*.5f9b0a7f-e8e5-410f-8f59-be666d704290.7143.loan
7143.loan
*.7143.loan
*.admin.7143.loan
*.app.7143.loan
*.assets.7143.loan
*.blog.7143.loan
*.hostmaster.7143.loan
*.my.7143.loan
*.new.7143.loan
*.public.7143.loan
*.www.7143.loan
admirme.vip
*.admirme.vip
*.demo.admirme.vip
*.magento.admirme.vip
*.store.admirme.vip
*.www.admirme.vip
arys.it
*.arys.it
*.hostmaster.arys.it
big-mltrends.xyz
*.big-mltrends.xyz
*.he00g.big-mltrends.xyz
jpvendtech.com
*.jpvendtech.com
*.ww25.jpvendtech.com
kmao.eu
*.kmao.eu
*.ww25.kmao.eu
*.analytic.nextband.it
nextband.it
*.nextband.it
*.hostmaster.offchainsecurity.com
offchainsecurity.com
*.offchainsecurity.com
*.cpcontacts.peluqueria.online
*.dwwly6asff.peluqueria.online
*.mail.peluqueria.online
peluqueria.online
*.peluqueria.online
*.productos.peluqueria.online
pilatesforeverybody.com
*.pilatesforeverybody.com
psmvhac.us
*.psmvhac.us
resorts-koh-144536336.click
*.resorts-koh-144536336.click
sdsearch.shop
*.sdsearch.shop
sheerhalo.com
*.sheerhalo.com
snow-travel.com
*.snow-travel.com
swingerhane.com
*.swingerhane.com
*.webdisk.swingerhane.com
tipus.it
*.tipus.it
*.webdisk.tipus.it
*.webmail.tipus.it
*.www.tipus.it
tllwh.bid
*.tllwh.bid
tmwyp.bid
*.tmwyp.bid
trainingawards.it
*.trainingawards.it
tridifferent.com
*.tridifferent.com
vermcha.my
*.vermcha.my
viradx.click
*.viradx.click
*.digitalbanking.vk-cc.com
*.owa.vk-cc.com
*.test.vk-cc.com
vk-cc.com
*.vk-cc.com
*.webmail.vk-cc.com
wcjt1.cc
*.wcjt1.cc
webb-mobi.digital
*.webb-mobi.digital
weblocalflirt.com
*.weblocalflirt.com
Other domains in certificate