Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=aderenti.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 07, 2026
Valid Until
May 08, 2026 74 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:1F:D4:E0:FC:BC:BA:9A:E1:1B:91:56:05:8C:35:AB:DF:B2:CA:CF:CA:83:DC:45:30:95:7E:74:FF:6F:1D:74
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
coolen.com *.coolen.com *.m.coolen.com *.mailer.coolen.com *.www.coolen.com

Other domains in certificate

332a.net *.332a.net *.wildcard.332a.net
acaciaridge.au *.acaciaridge.au
aderenti.it *.aderenti.it
brightest.au *.brightest.au
*.bigquery.etacom.com etacom.com *.etacom.com *.forum.etacom.com *.m.etacom.com *.poc.etacom.com *.shop.etacom.com *.wiki.etacom.com
fnaatics.com *.fnaatics.com *.login.fnaatics.com
hobartdaytours.au *.hobartdaytours.au
infected.au *.infected.au
inflightentertainment.au *.inflightentertainment.au
insuranceleads.au *.insuranceleads.au
kitchencupboards.au *.kitchencupboards.au
landvalues.au *.landvalues.au
luxurycarrentals.au *.luxurycarrentals.au
mavis.au *.mavis.au
medicals.au *.medicals.au
movieposters.au *.movieposters.au
noisepollution.au *.noisepollution.au
opening.au *.opening.au
*.backup.paneldraft.com *.mx.paneldraft.com paneldraft.com *.paneldraft.com *.wiki.paneldraft.com
*.462.pickvideolink.com *.469.pickvideolink.com *.503.pickvideolink.com *.547.pickvideolink.com *.549.pickvideolink.com pickvideolink.com *.pickvideolink.com *.wildcard.pickvideolink.com
salasso.it *.salasso.it
scam-dector.com *.scam-dector.com
semitrailer.au *.semitrailer.au
struth.au *.struth.au
supporters.au *.supporters.au
tankard.au *.tankard.au
*.api.tomasella.com *.dev.tomasella.com *.mail.tomasella.com *.sitemap.tomasella.com *.test.tomasella.com tomasella.com *.tomasella.com *.ww01.tomasella.com *.ww16.tomasella.com *.ww38.tomasella.com
tuxedorentals.au *.tuxedorentals.au
webmobile.au *.webmobile.au
wholesaling.au *.wholesaling.au