Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=catchthewave.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
70:84:CA:08:A5:82:44:F7:BB:FA:17:84:7A:28:6B:64:02:CC:72:40:CE:58:73:EC:F9:C9:66:99:15:C3:A8:35
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
farris.it
*.farris.it
catchthewave.it
*.catchthewave.it
etch.it
*.etch.it
exactlylike.it
*.exactlylike.it
extremely.it
*.extremely.it
falseaccuse.it
*.falseaccuse.it
fammiunofferta.it
*.fammiunofferta.it
farconsulenza.it
*.farconsulenza.it
farebio.it
*.farebio.it
faresoldicolweb.it
*.faresoldicolweb.it
farmy.it
*.farmy.it
fashionstories.it
*.fashionstories.it
features.it
*.features.it
feebkform.com
*.feebkform.com
fhwzz84.com
*.fhwzz84.com
fifa2012.it
*.fifa2012.it
fisheye.it
*.fisheye.it
flaw.it
*.flaw.it
flut.it
*.flut.it
fourwheelers.it
*.fourwheelers.it
fratture.it
*.fratture.it
freeadv.it
*.freeadv.it
freeup.it
*.freeup.it
freeuse.it
*.freeuse.it
frora.it
*.frora.it
funphotos.it
*.funphotos.it
fxforex.it
*.fxforex.it
gamefootball.it
*.gamefootball.it
ganobetgirisim.com
*.ganobetgirisim.com
gathered.it
*.gathered.it
generationlead.it
*.generationlead.it
geovanni.it
*.geovanni.it
getaahead.com
*.getaahead.com
gettodo.it
*.gettodo.it
ginni.it
*.ginni.it
giralo.it
*.giralo.it
glap.it
*.glap.it
globalfree.it
*.globalfree.it
globally.it
*.globally.it
goldname.it
*.goldname.it
gomez.it
*.gomez.it
graziesportsbar.com
*.graziesportsbar.com
grudge.it
*.grudge.it
gynecologists.it
*.gynecologists.it
habanos.it
*.habanos.it
Other domains in certificate