Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=massatrattoria.com.br
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 07, 2026
Valid Until
July 06, 2026 48 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CD:84:28:17:15:86:D5:4F:A4:3B:B6:D5:26:28:5A:89:BC:43:63:E5:DE:AD:10:1A:84:9A:AB:54:56:0C:8D:43
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
goodsoftt.com *.goodsoftt.com

Other domains in certificate

101ebusinesstips.com *.101ebusinesstips.com *.ww25.101ebusinesstips.com
1q1s.com *.1q1s.com *.m.1q1s.com *.ww16.1q1s.com
alertsmails.com *.alertsmails.com *.ww25.alertsmails.com *.ww38.alertsmails.com
australianbusinessvisas.com.au *.australianbusinessvisas.com.au
chaile.org *.chaile.org *.ns3155163.chaile.org *.wiki.chaile.org *.ww25.chaile.org *.www.chaile.org
cryptotradex.io *.cryptotradex.io
digitalstreet.org *.digitalstreet.org *.film.digitalstreet.org *.www.digitalstreet.org
djhookline.com *.djhookline.com
doctermusik.com *.doctermusik.com *.ww25.doctermusik.com
enairo.eu *.enairo.eu
formuladjr.com *.formuladjr.com *.wildcard.formuladjr.com *.ww16.formuladjr.com *.ww25.formuladjr.com
genetikabrno.eu *.genetikabrno.eu *.ww16.genetikabrno.eu
growcraft.site *.growcraft.site
gunzer.io *.gunzer.io *.ww38.gunzer.io
hebel-house-852673428.click *.hebel-house-852673428.click
hornysimp.xyz *.hornysimp.xyz *.ww38.hornysimp.xyz
longhornconsult.com *.longhornconsult.com
marcinwalasek.pl *.marcinwalasek.pl
massatrattoria.com.br *.massatrattoria.com.br
ncasi2.org *.ncasi2.org *.ww25.ncasi2.org
*.random.renritsukyo.com renritsukyo.com *.renritsukyo.com
*.cpcontacts.rokkurro.com *.hostmaster.rokkurro.com *.postmaster.rokkurro.com *.random.rokkurro.com rokkurro.com *.rokkurro.com *.webdisk.rokkurro.com *.www.rokkurro.com
sharky.finance *.sharky.finance
spurgu.tv *.spurgu.tv *.www.spurgu.tv
stakecassino.bet *.stakecassino.bet *.ww25.stakecassino.bet
*.asp.sukeroku4147.com *.plsbeta.sukeroku4147.com *.smtp.sukeroku4147.com sukeroku4147.com *.sukeroku4147.com
*.dev.weddingcakes.uk weddingcakes.uk *.weddingcakes.uk
zarintarharvand.ir *.zarintarharvand.ir