76/100 SECURITY SCORE

Certificate Information

Subject
CN=borntoplay.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 03, 2026
Valid Until
July 02, 2026 51 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C8:8E:9C:45:B3:5D:89:FB:14:BB:88:C6:43:A1:60:3A:16:F6:C2:2F:5A:F1:34:92:5E:70:47:17:74:01:72:18
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
borntoplay.it *.borntoplay.it *.admin.borntoplay.it *.analytic.borntoplay.it *.api.borntoplay.it *.dashboard.borntoplay.it *.reporting.borntoplay.it *.research.borntoplay.it *.supersets.borntoplay.it

Other domains in certificate

3333sq.co *.3333sq.co *.cn.3333sq.co *.co.3333sq.co *.com.3333sq.co *.comv.3333sq.co *.con.3333sq.co *.fun.3333sq.co *.io.3333sq.co *.javlibs.3333sq.co *.kedouxxx.3333sq.co *.me.3333sq.co *.sex.3333sq.co *.trade.3333sq.co *.tv.3333sq.co *.vip.3333sq.co *.website.3333sq.co *.xe.3333sq.co *.xxoo.3333sq.co
a098rpt.top *.a098rpt.top *.aef.a098rpt.top
coesa.it *.coesa.it *.mx.coesa.it
*.a.huaylike1.com huaylike1.com *.huaylike1.com *.ww12.huaylike1.com
huohuayuan.vip *.huohuayuan.vip *.ww.huohuayuan.vip *.ww25.huohuayuan.vip *.ww38.huohuayuan.vip
*.cronos.imgprew.com imgprew.com *.imgprew.com *.inside.imgprew.com *.ww1.imgprew.com
*.blog.nyfinancialbridge.com *.cdn.nyfinancialbridge.com *.guilwwhm.nyfinancialbridge.com nyfinancialbridge.com *.nyfinancialbridge.com *.pop.nyfinancialbridge.com
ofenen.nl *.ofenen.nl *.random.ofenen.nl *.spelin.ofenen.nl *.speling.ofenen.nl *.spellig.ofenen.nl *.taal.ofenen.nl *.tafels.ofenen.nl
*.dash.platformgames.it *.dashboard.platformgames.it *.demo.platformgames.it *.metric.platformgames.it platformgames.it *.platformgames.it
*.api.progresasive.com *.app.progresasive.com *.apps.progresasive.com *.claims.progresasive.com *.data.progresasive.com *.m.progresasive.com *.mail.progresasive.com *.prod.progresasive.com progresasive.com *.progresasive.com *.qa.progresasive.com *.remote.progresasive.com *.sitemap.progresasive.com *.sitemaps.progresasive.com *.ssl1.progresasive.com *.vpn.progresasive.com *.ww.progresasive.com *.ww38.progresasive.com *.www.progresasive.com
seedum.com *.seedum.com *.www.seedum.com