Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aderenti.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 07, 2026
Valid Until
May 08, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:1F:D4:E0:FC:BC:BA:9A:E1:1B:91:56:05:8C:35:AB:DF:B2:CA:CF:CA:83:DC:45:30:95:7E:74:FF:6F:1D:74
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
coolen.com
*.coolen.com
*.m.coolen.com
*.mailer.coolen.com
*.www.coolen.com
332a.net
*.332a.net
*.wildcard.332a.net
acaciaridge.au
*.acaciaridge.au
aderenti.it
*.aderenti.it
brightest.au
*.brightest.au
*.bigquery.etacom.com
etacom.com
*.etacom.com
*.forum.etacom.com
*.m.etacom.com
*.poc.etacom.com
*.shop.etacom.com
*.wiki.etacom.com
fnaatics.com
*.fnaatics.com
*.login.fnaatics.com
hobartdaytours.au
*.hobartdaytours.au
infected.au
*.infected.au
inflightentertainment.au
*.inflightentertainment.au
insuranceleads.au
*.insuranceleads.au
kitchencupboards.au
*.kitchencupboards.au
landvalues.au
*.landvalues.au
luxurycarrentals.au
*.luxurycarrentals.au
mavis.au
*.mavis.au
medicals.au
*.medicals.au
movieposters.au
*.movieposters.au
noisepollution.au
*.noisepollution.au
opening.au
*.opening.au
*.backup.paneldraft.com
*.mx.paneldraft.com
paneldraft.com
*.paneldraft.com
*.wiki.paneldraft.com
*.462.pickvideolink.com
*.469.pickvideolink.com
*.503.pickvideolink.com
*.547.pickvideolink.com
*.549.pickvideolink.com
pickvideolink.com
*.pickvideolink.com
*.wildcard.pickvideolink.com
salasso.it
*.salasso.it
scam-dector.com
*.scam-dector.com
semitrailer.au
*.semitrailer.au
struth.au
*.struth.au
supporters.au
*.supporters.au
tankard.au
*.tankard.au
*.api.tomasella.com
*.dev.tomasella.com
*.mail.tomasella.com
*.sitemap.tomasella.com
*.test.tomasella.com
tomasella.com
*.tomasella.com
*.ww01.tomasella.com
*.ww16.tomasella.com
*.ww38.tomasella.com
tuxedorentals.au
*.tuxedorentals.au
webmobile.au
*.webmobile.au
wholesaling.au
*.wholesaling.au
Other domains in certificate