Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=credit-service.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 26, 2026
Valid Until
August 24, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
47:55:FA:A1:70:88:9D:B2:76:9A:B0:57:49:BD:B6:C6:B6:FD:59:4D:16:40:6D:EF:BE:1E:D8:9A:93:FA:A6:3D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
axxir.com
*.axxir.com
*.glssdev.axxir.com
1180yhc301.top
*.1180yhc301.top
*.5knlkk.1180yhc301.top
aigent-cloud.com
*.aigent-cloud.com
*.test.aigent-cloud.com
*.www.aigent-cloud.com
*.access.credit-service.it
*.analytic.credit-service.it
*.analytics.credit-service.it
*.aniqmail.credit-service.it
*.bigdata.credit-service.it
*.chart.credit-service.it
*.correo.credit-service.it
*.correu.credit-service.it
credit-service.it
*.credit-service.it
*.dashboard.credit-service.it
*.desktop.credit-service.it
*.email.credit-service.it
*.emv1.credit-service.it
*.eposta.credit-service.it
*.ex02.credit-service.it
*.exmail2.credit-service.it
*.hostmaster.credit-service.it
*.mail.credit-service.it
*.mail1.credit-service.it
*.mail3.credit-service.it
*.msexch2k13.credit-service.it
*.mx001.credit-service.it
*.mymail.credit-service.it
*.newmail2013.credit-service.it
*.ogrencieposta.credit-service.it
*.outlook.credit-service.it
*.owa.credit-service.it
*.production.credit-service.it
*.rds.credit-service.it
*.rdweb.credit-service.it
*.research.credit-service.it
*.smail.credit-service.it
*.smtp.credit-service.it
*.smtpa.credit-service.it
*.ssl.credit-service.it
*.sslvpn.credit-service.it
*.superset.credit-service.it
*.supersets.credit-service.it
*.vdi.credit-service.it
*.webmail.credit-service.it
*.webmail2013.credit-service.it
*.www.credit-service.it
*.0l9ao.inlai.com.cn
*.1qdwemg.inlai.com.cn
*.5z.inlai.com.cn
*.7fwd95ho.inlai.com.cn
*.fql5wz1.inlai.com.cn
inlai.com.cn
*.inlai.com.cn
*.lrdkv.inlai.com.cn
*.pr.inlai.com.cn
*.rz0vvpw.inlai.com.cn
*.sc2z.inlai.com.cn
*.tg.inlai.com.cn
*.v7.inlai.com.cn
*.zh.inlai.com.cn
*.zycfx.inlai.com.cn
*.app.maacu.com
maacu.com
*.maacu.com
*.portal.maacu.com
*.rdp.maacu.com
*.acceptance.mabaf.com
*.hostmaster.mabaf.com
*.login.mabaf.com
mabaf.com
*.mabaf.com
*.webmail.mabaf.com
*.71e611b3-391b-4ce0-b9df-753fd18284aa.previewtasting.com
*.api.previewtasting.com
*.mailer.previewtasting.com
*.mta-sts.previewtasting.com
*.old.previewtasting.com
previewtasting.com
*.previewtasting.com
*.random.previewtasting.com
*.summary.previewtasting.com
*.uat.previewtasting.com
*.www.previewtasting.com
Other domains in certificate