Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=plenociudadano.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 28, 2026
Valid Until
July 27, 2026 36 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DB:AC:D2:56:41:B2:A6:56:66:8E:02:7B:20:1A:64:16:65:F0:A0:F3:C2:A8:30:CE:70:EA:CB:2B:67:1A:03:11
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
cylinder.it *.cylinder.it *.admin.cylinder.it *.api.cylinder.it *.hostmaster.cylinder.it *.the.cylinder.it

Other domains in certificate

basari201.bet *.basari201.bet *.preprod.basari201.bet
dapprdar.com *.dapprdar.com *.mx10.dapprdar.com *.webmail.dapprdar.com
*.blog.hirshfielddentalcare.com hirshfielddentalcare.com *.hirshfielddentalcare.com
holop2-kinogo.online *.holop2-kinogo.online
indianimmunology.org *.indianimmunology.org
*.2024.johnfats.com *.ebay.johnfats.com johnfats.com *.johnfats.com *.m.johnfats.com *.random.johnfats.com *.www.johnfats.com
*.blog.loteriascaixabet.bet loteriascaixabet.bet *.loteriascaixabet.bet *.wp.loteriascaixabet.bet
matador.studio *.matador.studio *.mx.matador.studio
*.hostmaster.mosterzeug.de *.magento.mosterzeug.de mosterzeug.de *.mosterzeug.de *.shop.mosterzeug.de *.staging.mosterzeug.de
multiplywesa.com *.multiplywesa.com *.server.multiplywesa.com
nuagesdemots.com *.nuagesdemots.com *.ww25.nuagesdemots.com
optimaldigest.site *.optimaldigest.site *.webdisk.optimaldigest.site
*.classifieds.plenociudadano.com *.hostmaster.plenociudadano.com plenociudadano.com *.plenociudadano.com *.ww38.plenociudadano.com
raja888.live *.raja888.live
security-jobs-6o9k4d8u0w0.sbs *.security-jobs-6o9k4d8u0w0.sbs
*.demo.starco.it *.dev.starco.it starco.it *.starco.it *.superset.starco.it *.web.starco.it
*.comune.subsea.live subsea.live *.subsea.live
*.board.taleequale.it taleequale.it *.taleequale.it
*.sitemaps.thewoodshedder.com *.smtp.thewoodshedder.com *.test.thewoodshedder.com thewoodshedder.com *.thewoodshedder.com
vapexpress.co.uk *.vapexpress.co.uk
*.cpanel.vkstream.stream *.dc-b601673871ef.vkstream.stream *.mail.vkstream.stream *.site.vkstream.stream *.tv.vkstream.stream vkstream.stream *.vkstream.stream *.wvw.vkstream.stream
www-tagesschau.de *.www-tagesschau.de
zhiznpovyzovugoq.online *.zhiznpovyzovugoq.online