Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=grigliatimetallici.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
98:11:1C:48:9C:E3:EF:BD:89:8B:FC:AE:AF:26:C5:04:3B:9D:E5:5E:0A:6E:BC:F9:E2:16:DE:DA:3B:1E:6B:AB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
hdhub4u.dev
*.hdhub4u.dev
506076.com
*.506076.com
99956bw.com
*.99956bw.com
birthdate.it
*.birthdate.it
da-da3.com
*.da-da3.com
deafsingle.it
*.deafsingle.it
greatholidaytours.com
*.greatholidaytours.com
grecarch.xyz
*.grecarch.xyz
grecflz.buzz
*.grecflz.buzz
greenbayhoppersfc.com
*.greenbayhoppersfc.com
grigliatimetallici.it
*.grigliatimetallici.it
grimi.it
*.grimi.it
gtjkjksd0930.cc
*.gtjkjksd0930.cc
gtobillboard.com
*.gtobillboard.com
gudwincasino.com
*.gudwincasino.com
gurukulkhurai.com
*.gurukulkhurai.com
haber.help
*.haber.help
hack2019.com
*.hack2019.com
haha303-ao.com
*.haha303-ao.com
hair-extensions4u.com
*.hair-extensions4u.com
hansib-books.com
*.hansib-books.com
heating-system-292350505.click
*.heating-system-292350505.click
helpast.buzz
*.helpast.buzz
hidate.com
*.hidate.com
hiroshima-custom-247830011.click
*.hiroshima-custom-247830011.click
hmvcfyte.xyz
*.hmvcfyte.xyz
homegame.it
*.homegame.it
honor.im
*.honor.im
horizonforgeme.lat
*.horizonforgeme.lat
horizonlinks.net
*.horizonlinks.net
hpmgeqd378.vip
*.hpmgeqd378.vip
hs48k.xyz
*.hs48k.xyz
hs52i.xyz
*.hs52i.xyz
hs52u.xyz
*.hs52u.xyz
hs53i.xyz
*.hs53i.xyz
hsb32.top
*.hsb32.top
hvfhf.bid
*.hvfhf.bid
hx4.my
*.hx4.my
hyderabadgifts.com
*.hyderabadgifts.com
i2h5xwn2wqc7.com
*.i2h5xwn2wqc7.com
ibet88biz.pro
*.ibet88biz.pro
icedswiss.com
*.icedswiss.com
idocentiscapigliati.com
*.idocentiscapigliati.com
iendeavormedia.com
*.iendeavormedia.com
ilckksposjwdlmobgbpf.com
*.ilckksposjwdlmobgbpf.com
Other domains in certificate