Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=24hrlovespells.online
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:B2:FE:B4:22:28:7D:7B:9A:B1:D9:92:09:5D:81:73:2C:D9:5F:60:8B:C2:85:3B:C9:67:D1:CF:5B:1E:5A:AC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
fure.it
*.fure.it
24hrlovespells.online
*.24hrlovespells.online
*.dashboard.24hrlovespells.online
77662222tz1.shop
*.77662222tz1.shop
*.com.77662222tz1.shop
farmer-companies-agent-mx.buzz
*.farmer-companies-agent-mx.buzz
fashionstreetwear.it
*.fashionstreetwear.it
fedhrlaw.com
*.fedhrlaw.com
few2020.com
*.few2020.com
feyup.pro
*.feyup.pro
fgtzv.cfd
*.fgtzv.cfd
fillesdaujourdhui.com
*.fillesdaujourdhui.com
fin4adsz.click
*.fin4adsz.click
finanziamentiassicurazioni.it
*.finanziamentiassicurazioni.it
finanziamentoacquistoauto.it
*.finanziamentoacquistoauto.it
first-fashion.com
*.first-fashion.com
fitnessbalancedlife.run
*.fitnessbalancedlife.run
fitnessbalancelife.xyz
*.fitnessbalancelife.xyz
fitnesschampionflow.run
*.fitnesschampionflow.run
fitnesscriteriachallenger.run
*.fitnesscriteriachallenger.run
fitnessgoalsahead.xyz
*.fitnessgoalsahead.xyz
fitnessspiritquest.run
*.fitnessspiritquest.run
five88.pizza
*.five88.pizza
flintstones.it
*.flintstones.it
formo.it
*.formo.it
fotos.xxx
*.fotos.xxx
freeask.it
*.freeask.it
freebird.shop
*.freebird.shop
fromabandoned.com
*.fromabandoned.com
frozensecondsphotography.xyz
*.frozensecondsphotography.xyz
galaxy.loans
*.galaxy.loans
galaxytowtruckco.xyz
*.galaxytowtruckco.xyz
gardenresort.it
*.gardenresort.it
gareeappalti.it
*.gareeappalti.it
genni.it
*.genni.it
getthepracticalaiguide.com
*.getthepracticalaiguide.com
ggvzxb.forsale
*.ggvzxb.forsale
giovanialforum.org
*.giovanialforum.org
gjcqo.net
*.gjcqo.net
globalbuzznews.cfd
*.globalbuzznews.cfd
globalknowledgesociety.com
*.globalknowledgesociety.com
globaltravelquest.xyz
*.globaltravelquest.xyz
gokertuning.com
*.gokertuning.com
gope.it
*.gope.it
*.comune.scafati.it
scafati.it
*.scafati.it
Other domains in certificate