Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sefer.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 03, 2026
Valid Until
August 01, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
54:05:6D:A2:12:E8:4A:CD:48:85:37:BF:26:3D:E8:EB:B3:8C:57:1B:34:30:E7:69:43:79:30:E9:55:64:EA:0B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
fullshot.it
*.fullshot.it
*.analytic.fullshot.it
*.app.fullshot.it
*.backend.fullshot.it
*.dashboard.fullshot.it
*.demo.fullshot.it
*.relay.fullshot.it
*.www.fullshot.it
31853.com
*.31853.com
*.remote.31853.com
91847.org
*.91847.org
*.www.91847.org
audiovisualtennessee.com
*.audiovisualtennessee.com
*.community.audiovisualtennessee.com
exroj.software
*.exroj.software
*.s.exroj.software
*.86f49d7d-a45c-4070-bf8f-26644ddc530c.fitnessmodells.com
*.admin.fitnessmodells.com
*.api.fitnessmodells.com
*.app.fitnessmodells.com
*.avdhxintranet.fitnessmodells.com
*.b3ec8b67-f4c0-4fca-b1ec-20afd5b32a61.fitnessmodells.com
*.backend.fitnessmodells.com
*.cadastro.fitnessmodells.com
*.cloud.fitnessmodells.com
*.demo.fitnessmodells.com
*.dev.fitnessmodells.com
fitnessmodells.com
*.fitnessmodells.com
*.hostmaster.fitnessmodells.com
*.intranet.fitnessmodells.com
*.landings.fitnessmodells.com
*.m.fitnessmodells.com
*.portal.fitnessmodells.com
*.rd.fitnessmodells.com
*.rds.fitnessmodells.com
*.rdweb.fitnessmodells.com
*.remote.fitnessmodells.com
*.shop.fitnessmodells.com
*.staging.fitnessmodells.com
*.wildcard.fitnessmodells.com
*.ww6.fitnessmodells.com
*.www.fitnessmodells.com
pmplc.software
*.pmplc.software
*.s.pmplc.software
*.ci.sefer.it
*.dash.sefer.it
*.data.sefer.it
*.database.sefer.it
*.db.sefer.it
*.dev.sefer.it
*.hostmaster.sefer.it
*.intelligence.sefer.it
*.mail.sefer.it
*.notexistsdata.sefer.it
*.pma.sefer.it
*.preprod.sefer.it
*.redash.sefer.it
*.reporting.sefer.it
sefer.it
*.sefer.it
*.smtp.sefer.it
*.stats.sefer.it
*.superset.sefer.it
*.vpnssl.sefer.it
*.dev.sneakthis.shop
*.news.sneakthis.shop
*.sip.sneakthis.shop
sneakthis.shop
*.sneakthis.shop
*.www.sneakthis.shop
*.xxeycsitemaps.sneakthis.shop
*.155bb213-ed93-4f32-b146-90e32c5e7521.vc77.cologne
*.41a4fc3a-e639-4e29-84ee-e72dbcedde47.vc77.cologne
*.api.vc77.cologne
*.app.vc77.cologne
*.dev.vc77.cologne
*.f0866b03-01b0-4f45-bbfc-69f62a137c5d.vc77.cologne
*.gnkprtest.vc77.cologne
*.members.vc77.cologne
*.test.vc77.cologne
vc77.cologne
*.vc77.cologne
*.www.vc77.cologne
Other domains in certificate