Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=autorentservice.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
85:C7:42:24:4C:92:57:E3:4D:A6:AE:50:BC:AD:FF:EC:37:43:DE:CB:D5:B3:EC:BA:55:04:AE:80:26:FA:8A:FA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
eftf2012.org *.eftf2012.org *.sitemap.eftf2012.org

Other domains in certificate

amazonprme.com *.amazonprme.com *.ww11.amazonprme.com *.ww16.amazonprme.com *.ww25.amazonprme.com
*.api.autorentservice.it autorentservice.it *.autorentservice.it *.demo.autorentservice.it *.notexistsadmin.autorentservice.it
blueoceanassets.com *.blueoceanassets.com *.cpanel.blueoceanassets.com *.cpcontacts.blueoceanassets.com *.ssl.blueoceanassets.com
cinereelsproduction.com *.cinereelsproduction.com *.np.cinereelsproduction.com
*.admin.danny-gates.sbs danny-gates.sbs *.danny-gates.sbs *.www.danny-gates.sbs
*.bbc.forbes.in *.bestprosintown.forbes.in *.bfsi.forbes.in *.co.forbes.in *.comwww.forbes.in *.eihltd.forbes.in forbes.in *.forbes.in *.hbr.forbes.in *.healthcare.forbes.in *.hotfix.forbes.in *.integration.forbes.in *.j.forbes.in *.jira.forbes.in *.lisa.forbes.in *.n.forbes.in *.pipeline.forbes.in *.s.forbes.in *.theitalicsherebelongtoprof.forbes.in *.vernona.forbes.in *.www.forbes.in
*.14.gdc.info *.15.gdc.info gdc.info *.gdc.info *.m.gdc.info *.mv.gdc.info
goeureka.com.au *.goeureka.com.au
healthyclinic.net *.healthyclinic.net *.ns.healthyclinic.net
*.demo.mecklenburgrealestate.com *.magento.mecklenburgrealestate.com mecklenburgrealestate.com *.mecklenburgrealestate.com *.old.mecklenburgrealestate.com *.shop.mecklenburgrealestate.com *.staging.mecklenburgrealestate.com *.store.mecklenburgrealestate.com *.ww12.mecklenburgrealestate.com *.www.mecklenburgrealestate.com
*.17bdba.meetexit.company meetexit.company *.meetexit.company
*.3byktg.melbets.tech melbets.tech *.melbets.tech
*.app.mubuyacademy.com *.bolade.mubuyacademy.com mubuyacademy.com *.mubuyacademy.com
*.admin.ringbox.it *.api.ringbox.it ringbox.it *.ringbox.it *.wp.ringbox.it
sportshorts.com.au *.sportshorts.com.au
thehill.it *.thehill.it
vibalo.info *.vibalo.info *.yupxl2.vibalo.info