Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=filesecurity.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BE:8D:28:8F:01:DB:45:D6:B6:35:5C:22:0F:9D:F3:21:48:1D:5E:D9:A2:71:26:84:01:AC:98:7C:1C:9B:31:2B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
firstdown.it
*.firstdown.it
andizhan.com
*.andizhan.com
filesecurity.it
*.filesecurity.it
findingredditadvertisingservice.com
*.findingredditadvertisingservice.com
findingredditservice.com
*.findingredditservice.com
finfiz.org
*.finfiz.org
fitnessunlockenergy.run
*.fitnessunlockenergy.run
fiton.it
*.fiton.it
flowermtnshop.com
*.flowermtnshop.com
foodmanagement.it
*.foodmanagement.it
formyclient.it
*.formyclient.it
francophones.it
*.francophones.it
fumaria.it
*.fumaria.it
futurian.it
*.futurian.it
fvrtt.bid
*.fvrtt.bid
gadri.it
*.gadri.it
gamingcenter.it
*.gamingcenter.it
gatomax69.com
*.gatomax69.com
gbxcb.me
*.gbxcb.me
getcertified.it
*.getcertified.it
giochiinternet.it
*.giochiinternet.it
gogu.it
*.gogu.it
gokudoaccounting.biz
*.gokudoaccounting.biz
golfshoppers.com
*.golfshoppers.com
goodfeedback.it
*.goodfeedback.it
grites.it
*.grites.it
hackerattack.it
*.hackerattack.it
heavenlybridequest.beauty
*.heavenlybridequest.beauty
hepan.pro
*.hepan.pro
hercules.capital
*.hercules.capital
hiera.it
*.hiera.it
home-care-agency-ca8-dp.click
*.home-care-agency-ca8-dp.click
homestorent.it
*.homestorent.it
hongkang666.cn
*.hongkang666.cn
hs68g.xyz
*.hs68g.xyz
humboldthotelgroup.com
*.humboldthotelgroup.com
hy60500.cc
*.hy60500.cc
i5htmp.top
*.i5htmp.top
icelands.it
*.icelands.it
idealjanitorialservices.com
*.idealjanitorialservices.com
iihyi.academy
*.iihyi.academy
ikbal4.xyz
*.ikbal4.xyz
ilmercatinodinatale.it
*.ilmercatinodinatale.it
innniosdalatez.cyou
*.innniosdalatez.cyou
intercharge.online
*.intercharge.online
Other domains in certificate