Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=maniglioni.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A0:2E:1C:FB:4D:72:33:29:34:00:64:AA:2D:24:19:31:0F:84:41:4C:18:08:CA:BB:5C:DD:21:D2:60:0B:2B:80
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
fankie.com
*.fankie.com
*.anyconnect.fankie.com
562918.top
*.562918.top
715713.mobi
*.715713.mobi
affittobreviperiodi.com
*.affittobreviperiodi.com
btnull.si
*.btnull.si
*.ww17.btnull.si
bvpsk.pro
*.bvpsk.pro
bxvjv.pro
*.bxvjv.pro
desiredtravelpaths.live
*.desiredtravelpaths.live
dlaner.com
*.dlaner.com
dreamweddingpath.beauty
*.dreamweddingpath.beauty
fnitruaronieasdalytreez.cyou
*.fnitruaronieasdalytreez.cyou
galeotto.com
*.galeotto.com
harmoniousbridalfest.beauty
*.harmoniousbridalfest.beauty
ijojd.shop
*.ijojd.shop
*.autodiscover.iwate.com
iwate.com
*.iwate.com
*.ww38.iwate.com
kelfc.cc
*.kelfc.cc
luaamwl.top
*.luaamwl.top
malditech.com
*.malditech.com
maniglioni.com
*.maniglioni.com
medicinen.com
*.medicinen.com
melapyr.com
*.melapyr.com
newtaipeicity.com
*.newtaipeicity.com
niotruaronitasdalecore.shop
*.niotruaronitasdalecore.shop
niotruaronitasdalre.cyou
*.niotruaronitasdalre.cyou
nlammert.de
*.nlammert.de
nmm48.top
*.nmm48.top
*.id-7786596704.number3.com
*.id-7786596739.number3.com
number3.com
*.number3.com
o9vlkgf.top
*.o9vlkgf.top
opj2kyc8.top
*.opj2kyc8.top
piersi.com
*.piersi.com
*.store.piersi.com
specializzata.com
*.specializzata.com
supremi.com
*.supremi.com
variabili.com
*.variabili.com
vittoriosi.com
*.vittoriosi.com
wi9iuq.shop
*.wi9iuq.shop
wplore.com
*.wplore.com
xn--9kqy4sc0n77ra.xyz
*.xn--9kqy4sc0n77ra.xyz
*.dev.xn--e3c3bc6aybdb.com
*.ftp.xn--e3c3bc6aybdb.com
*.wp.xn--e3c3bc6aybdb.com
xn--e3c3bc6aybdb.com
*.xn--e3c3bc6aybdb.com
xn--mes358agmig73a.xyz
*.xn--mes358agmig73a.xyz
Other domains in certificate