Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=dailyscience.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 12, 2026
Valid Until
August 10, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:67:1B:11:32:F8:C7:44:84:48:B3:64:33:3C:D4:4C:A4:7B:14:9C:DF:8A:5D:42:5C:69:AF:50:AF:C7:FE:29
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
dailyscience.it *.dailyscience.it

Other domains in certificate

1xbet-movies.com *.1xbet-movies.com *.m.1xbet-movies.com *.ww38.1xbet-movies.com
accorto.it *.accorto.it *.admin.accorto.it *.api.accorto.it *.www.accorto.it *.wwww.accorto.it
bloodrussia.online *.bloodrussia.online *.chat.bloodrussia.online *.development.bloodrussia.online *.download.bloodrussia.online *.flowiseai.bloodrussia.online *.forum.bloodrussia.online *.pawn.bloodrussia.online *.pop.bloodrussia.online *.preprod.bloodrussia.online *.qa.bloodrussia.online *.smtp.bloodrussia.online *.superset.bloodrussia.online *.wildcard.bloodrussia.online *.ww25.bloodrussia.online
carde.group *.carde.group *.ww38.carde.group
ciapenta.click *.ciapenta.click *.m.ciapenta.click *.ww25.ciapenta.click *.ww38.ciapenta.click
h-granvia.com *.h-granvia.com *.random.h-granvia.com
*.autodiscover.hogvillehams.club *.cpcontacts.hogvillehams.club hogvillehams.club *.hogvillehams.club *.webmail.hogvillehams.club *.ww38.hogvillehams.club *.www.hogvillehams.club
money-management.com.au *.money-management.com.au *.ww38.money-management.com.au
*.autodiscover.plentier.tech *.cn.plentier.tech *.cpanel.plentier.tech *.cpcalendars.plentier.tech *.dan.plentier.tech *.email.plentier.tech *.login.plentier.tech *.mail1.plentier.tech *.news.plentier.tech plentier.tech *.plentier.tech *.remote.plentier.tech *.ru.plentier.tech *.secure.plentier.tech *.vpn.plentier.tech
securovir.xyz *.securovir.xyz *.ww38.securovir.xyz
*.exchange.sunrisetanning.com *.mail10.sunrisetanning.com *.mail5.sunrisetanning.com *.mailbox.sunrisetanning.com *.ms.sunrisetanning.com *.mx20.sunrisetanning.com sunrisetanning.com *.sunrisetanning.com *.ww.sunrisetanning.com *.ww1.sunrisetanning.com *.ww11.sunrisetanning.com *.ww16.sunrisetanning.com *.ww25.sunrisetanning.com *.ww38.sunrisetanning.com *.ww5.sunrisetanning.com
suporapple.com *.suporapple.com *.ww16.suporapple.com
*.32.tastefultwists.com tastefultwists.com *.tastefultwists.com
vertolet.website *.vertolet.website *.ww17.vertolet.website