76/100 SECURITY SCORE

Certificate Information

Subject
CN=short55.pics
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 15, 2026
Valid Until
July 14, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A9:5D:AC:6E:F8:7B:EB:84:4D:DD:2C:29:1A:39:67:D4:01:D5:DA:91:F9:B7:51:CA:56:98:16:9D:AA:46:5D:4D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
teamfetchasquads.com *.teamfetchasquads.com *.mx1.teamfetchasquads.com *.rd.teamfetchasquads.com

Other domains in certificate

8088.it *.8088.it *.app.8088.it *.dashboard.8088.it *.dashboards.8088.it *.reporting.8088.it
*.08aac881-e616-49f3-932e-e7ef716da285.giftyboxes.com *.0bc9465a-8067-4fb9-a21d-87a4b3daada6.giftyboxes.com *.352644aa-6aed-4528-8854-db3b071e39d4.giftyboxes.com *.a.giftyboxes.com *.admin.giftyboxes.com *.api.giftyboxes.com *.app.giftyboxes.com *.assets.giftyboxes.com *.demo.giftyboxes.com giftyboxes.com *.giftyboxes.com *.hostmaster.giftyboxes.com *.kcivuhostmaster.giftyboxes.com *.mail.giftyboxes.com *.onscuadmin.giftyboxes.com
*.api.liberarte.it *.backend.liberarte.it *.demo.liberarte.it *.hostmaster.liberarte.it liberarte.it *.liberarte.it *.remote.liberarte.it *.staging.liberarte.it *.www.liberarte.it
*.ba.nkofamerica.com *.bawww.nkofamerica.com *.gsabccen.nkofamerica.com nkofamerica.com *.nkofamerica.com
*.8b2a06a2-bdd4-48fb-b0a1-a2bc3ca439b6.qt3806.com *.desktops.qt3806.com *.mycloud.qt3806.com qt3806.com *.qt3806.com *.virtualaccess1.qt3806.com
*.11a5cc8d-bb8d-4eae-8aa6-44f879cc7cf6.select-jobs.com *.450c6495-01f5-4ee1-bfbd-bee7482b5feb.select-jobs.com *.65e3bc99-ff97-48f6-8edf-0040a7a957a6.select-jobs.com *.9012a277-1e0a-43eb-ac74-f7ababca4ed1.select-jobs.com *.access.select-jobs.com *.amazon.select-jobs.com *.api.select-jobs.com *.apps.select-jobs.com *.b.select-jobs.com *.backup.select-jobs.com *.bda94ff4-2996-43d0-bed7-72f9d2495d0c.select-jobs.com *.cloud.select-jobs.com *.dashboard.select-jobs.com *.de.select-jobs.com *.demerarawaves.select-jobs.com *.dev.select-jobs.com *.eytiydev.select-jobs.com *.facebook.select-jobs.com *.fxvsqww1.select-jobs.com *.gateway.select-jobs.com *.gqznpffffffffffff.select-jobs.com *.hs3.select-jobs.com *.m.select-jobs.com *.mx.select-jobs.com *.ne-np.select-jobs.com *.portal.select-jobs.com *.qa.select-jobs.com *.rd.select-jobs.com *.rds.select-jobs.com *.remote.select-jobs.com *.remoto.select-jobs.com select-jobs.com *.select-jobs.com *.staging.select-jobs.com *.stg.select-jobs.com *.ts.select-jobs.com *.v1.select-jobs.com *.v2.select-jobs.com *.vpn.select-jobs.com *.web.select-jobs.com *.ww12.select-jobs.com *.www.select-jobs.com
short55.pics *.short55.pics *.ww25.short55.pics