Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=stampaserigrafica.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A1:DA:E0:07:0D:6D:1B:BE:09:E1:B2:C7:1E:2C:03:E9:C6:54:D2:7D:4E:99:D0:39:1C:5F:E8:2E:0A:58:9D:42
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
1600.in
*.1600.in
006527.shop
*.006527.shop
01030.care
*.01030.care
02375.one
*.02375.one
06325.loan
*.06325.loan
06701.cc
*.06701.cc
075896.pizza
*.075896.pizza
100092.xyz
*.100092.xyz
10128.net
*.10128.net
109996.cc
*.109996.cc
12514.one
*.12514.one
1301238aa5.sbs
*.1301238aa5.sbs
1599.in
*.1599.in
168798.vip
*.168798.vip
18677ppvip.shop
*.18677ppvip.shop
1b41bboxing.com
*.1b41bboxing.com
2131.in
*.2131.in
2258.in
*.2258.in
22766.biz
*.22766.biz
247.one
*.247.one
*.insight.247.one
294.me
*.294.me
29495.co
*.29495.co
29585-vip6.com
*.29585-vip6.com
29585-vip7.com
*.29585-vip7.com
297106.com
*.297106.com
29888kk.com
*.29888kk.com
3138.in
*.3138.in
32300.blog
*.32300.blog
3651050.com
*.3651050.com
372951.bid
*.372951.bid
3mixnft.com
*.3mixnft.com
43823.work
*.43823.work
49558.biz
*.49558.biz
531962.vip
*.531962.vip
53434.loan
*.53434.loan
551304.me
*.551304.me
555004.xyz
*.555004.xyz
56716.me
*.56716.me
casibom1236.com
*.casibom1236.com
*.central.casibom1236.com
i9bet29.club
*.i9bet29.club
*.transparencia.i9bet29.club
stampaserigrafica.com
*.stampaserigrafica.com
*.webmail.stampaserigrafica.com
*.com01-b733e463c54b.sunmoone.lat
sunmoone.lat
*.sunmoone.lat
Other domains in certificate