76/100 SECURITY SCORE

Certificate Information

Subject
CN=blackandgold.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 26, 2026
Valid Until
August 24, 2026 79 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E0:46:33:59:EB:92:AF:2E:88:0C:AD:9D:4D:44:34:EC:98:5D:B1:02:6A:22:98:C3:0C:FA:0B:E2:C3:A3:FE:81
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
funnelpagebuilder.com *.funnelpagebuilder.com *.73bf5ff7-2e76-4627-bc43-409575595f0c.funnelpagebuilder.com *.api.funnelpagebuilder.com *.app.funnelpagebuilder.com *.backup.funnelpagebuilder.com *.dashboard.funnelpagebuilder.com *.dev.funnelpagebuilder.com *.external.funnelpagebuilder.com *.homolog.funnelpagebuilder.com *.intranet.funnelpagebuilder.com *.m.funnelpagebuilder.com *.mail.funnelpagebuilder.com *.mailer.funnelpagebuilder.com *.marketing.funnelpagebuilder.com *.q9rfu0.funnelpagebuilder.com *.qa.funnelpagebuilder.com *.secure.funnelpagebuilder.com *.share.funnelpagebuilder.com *.stg.funnelpagebuilder.com *.test.funnelpagebuilder.com *.v1.funnelpagebuilder.com

Other domains in certificate

24hour-locksmith-car-keys.info *.24hour-locksmith-car-keys.info *.admin.24hour-locksmith-car-keys.info *.api.24hour-locksmith-car-keys.info *.app.24hour-locksmith-car-keys.info *.autoconfig.24hour-locksmith-car-keys.info *.backend.24hour-locksmith-car-keys.info *.backup.24hour-locksmith-car-keys.info *.chat.24hour-locksmith-car-keys.info *.cms.24hour-locksmith-car-keys.info *.crm.24hour-locksmith-car-keys.info *.dashboard.24hour-locksmith-car-keys.info *.dev.24hour-locksmith-car-keys.info *.docs.24hour-locksmith-car-keys.info *.external.24hour-locksmith-car-keys.info *.hr.24hour-locksmith-car-keys.info *.intranet.24hour-locksmith-car-keys.info *.my.24hour-locksmith-car-keys.info *.outlook.24hour-locksmith-car-keys.info *.school.24hour-locksmith-car-keys.info *.share.24hour-locksmith-car-keys.info *.sharepoint.24hour-locksmith-car-keys.info *.staging.24hour-locksmith-car-keys.info *.uat.24hour-locksmith-car-keys.info
blackandgold.it *.blackandgold.it *.dev.blackandgold.it *.email.blackandgold.it *.remote.blackandgold.it
*.api.dominatrice.org *.app.dominatrice.org *.assets.dominatrice.org *.audio.dominatrice.org *.backup.dominatrice.org *.cloud.dominatrice.org *.cuissarde.dominatrice.org *.cy8cko.dominatrice.org *.demo.dominatrice.org *.dev.dominatrice.org dominatrice.org *.dominatrice.org *.ftp.dominatrice.org *.gvfvusecure.dominatrice.org *.m.dominatrice.org *.mail.dominatrice.org *.mailer.dominatrice.org *.marketing.dominatrice.org *.nalkxkokwom.dominatrice.org *.obqwzgvfvusecure.dominatrice.org *.pop3.dominatrice.org *.qa.dominatrice.org *.rd.dominatrice.org *.rds.dominatrice.org *.rdweb.dominatrice.org *.remote.dominatrice.org *.secure.dominatrice.org *.sjcueflb.dominatrice.org *.smtp.dominatrice.org *.staging.dominatrice.org *.stg.dominatrice.org *.test.dominatrice.org *.uat.dominatrice.org *.uogixrdweb.dominatrice.org *.v1.dominatrice.org *.v2.dominatrice.org *.www.dominatrice.org
watchmaking.it *.watchmaking.it