Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=estatevacanze.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 22, 2026
Valid Until
May 23, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3D:F1:3B:34:70:E4:DE:11:E5:5B:F0:E0:3C:5D:C7:68:41:6C:DC:59:9B:58:64:C2:A9:D6:AE:0A:75:62:68:85
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
evolutiondesign.it *.evolutiondesign.it

Other domains in certificate

antojito.com *.antojito.com *.imap.antojito.com *.mail.antojito.com *.portal.antojito.com *.ww25.antojito.com *.www4.antojito.com
autocaravaneando.pt *.autocaravaneando.pt *.classificados.autocaravaneando.pt *.loja.autocaravaneando.pt *.webdisk.autocaravaneando.pt *.ww38.autocaravaneando.pt
*.api.biomi.xyz biomi.xyz *.biomi.xyz *.d.biomi.xyz *.jp.biomi.xyz *.mail.biomi.xyz *.us.biomi.xyz
*.api.cryptox-top.exchange *.app.cryptox-top.exchange *.atmtoapi.cryptox-top.exchange *.backend.cryptox-top.exchange *.blog.cryptox-top.exchange *.bot.cryptox-top.exchange cryptox-top.exchange *.cryptox-top.exchange *.dev.cryptox-top.exchange *.hostmaster.cryptox-top.exchange *.login.cryptox-top.exchange *.staging.cryptox-top.exchange *.test.cryptox-top.exchange *.user.cryptox-top.exchange
*.72cf49e8-6507-430a-8bc3-e16deb2f05fc.edahubzzz.click edahubzzz.click *.edahubzzz.click *.go.edahubzzz.click
eiterflechte.de *.eiterflechte.de *.random.eiterflechte.de
estatevacanze.it *.estatevacanze.it
estre.it *.estre.it
fatum.it *.fatum.it
fincrypp.click *.fincrypp.click
giarratano.com *.giarratano.com *.gp.giarratano.com
*.drtjikou.hasmoniioaealconnect.cyou hasmoniioaealconnect.cyou *.hasmoniioaealconnect.cyou *.ursmqdcz.hasmoniioaealconnect.cyou *.zliqstef.hasmoniioaealconnect.cyou
*.cpanel.moviedom.co *.cpcalendars.moviedom.co *.cpcontacts.moviedom.co *.mail.moviedom.co moviedom.co *.moviedom.co *.random.moviedom.co *.webdisk.moviedom.co *.webmail.moviedom.co *.www.moviedom.co
*.com.realestateopportunities.com realestateopportunities.com *.realestateopportunities.com
redditban.com *.redditban.com *.reddites.redditban.com *.us.redditban.com *.ww25.redditban.com
*.app.sbpdcl.in *.bills.sbpdcl.in *.hargharbijli.sbpdcl.in sbpdcl.in *.sbpdcl.in *.shop.sbpdcl.in
*.hostmaster.thetshirts.it thetshirts.it *.thetshirts.it
*.email.unwanted.it *.hostmaster.unwanted.it unwanted.it *.unwanted.it