Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=onthisveryspotfibertel.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
16:92:7D:61:A6:B5:CC:D9:08:14:73:0F:BB:AE:24:7B:D1:2F:F7:74:28:59:C0:23:86:63:39:3D:13:6A:AB:BA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
even.it
*.even.it
*.staging.even.it
*.ttaruutful.even.it
5754.cam
*.5754.cam
*.cian.5754.cam
*.demo.5754.cam
*.idram.5754.cam
*.izswkcian.5754.cam
*.search.5754.cam
brzezicki.com
*.brzezicki.com
buyfamilygift.com
*.buyfamilygift.com
*.42f8267a-7ca9-4d33-95ee-1b0a591d0311.buyricerobot.co
*.b177e964-750d-4506-9d74-429303619df1.buyricerobot.co
*.b82bfb70-8a46-4ce8-9e21-873ac82acb14.buyricerobot.co
buyricerobot.co
*.buyricerobot.co
*.www.buyricerobot.co
deluts.store
*.deluts.store
granitepebbles.com
*.granitepebbles.com
*.mail.granitepebbles.com
*.test.granitepebbles.com
*.ww17.granitepebbles.com
*.dev.homesafetytoday.net
homesafetytoday.net
*.homesafetytoday.net
*.hostmaster.homesafetytoday.net
*.insight.homesafetytoday.net
*.new.homesafetytoday.net
*.service.homesafetytoday.net
*.staging.homesafetytoday.net
infopolicy.org
*.infopolicy.org
kayogrencard.com
*.kayogrencard.com
keelyy.com
*.keelyy.com
kuais258.com
*.kuais258.com
l8fee.com
*.l8fee.com
lc44444.cc
*.lc44444.cc
lin-prox.click
*.lin-prox.click
lodieflylodie.com
*.lodieflylodie.com
lookgroup.it
*.lookgroup.it
*.smtpmail.lookgroup.it
machinery-parts-188375251.click
*.machinery-parts-188375251.click
medication-causes-334004995.click
*.medication-causes-334004995.click
modelday.xyz
*.modelday.xyz
*.zl1z8.modelday.xyz
montuosa.it
*.montuosa.it
mxifts.pro
*.mxifts.pro
newyorkcitymakeup.com
*.newyorkcitymakeup.com
northernflsh.com
*.northernflsh.com
oddsjam.co.uk
*.oddsjam.co.uk
*.ww25.oddsjam.co.uk
*.www.oddsjam.co.uk
onthisveryspotfibertel.com
*.onthisveryspotfibertel.com
*.sklep.swissvax-detailing.pl
swissvax-detailing.pl
*.swissvax-detailing.pl
*.w.swissvax-detailing.pl
*.ww25.swissvax-detailing.pl
thecurebrasil.online
*.thecurebrasil.online
*.cdn.topgoodshop.com
topgoodshop.com
*.topgoodshop.com
*.ww25.topgoodshop.com
*.ww38.topgoodshop.com
wurzelimperium-cheats.de
*.wurzelimperium-cheats.de
Other domains in certificate