Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=giftforyou.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 09, 2026
Valid Until
July 08, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B4:0C:EC:CA:A8:10:C4:47:9D:2B:B6:88:3B:30:ED:5E:74:0C:08:0D:EC:08:85:08:07:CE:DC:9B:B6:00:EC:B2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
aheaur.com
*.aheaur.com
*.gpt.aheaur.com
101people.com
*.101people.com
*.com.101people.com
*.xyz.101people.com
apkinjectors.com
*.apkinjectors.com
*.ww38.apkinjectors.com
buenprovecho.me
*.buenprovecho.me
*.ww38.buenprovecho.me
dementoni.com
*.dementoni.com
*.fr.dementoni.com
*.www.dementoni.com
*.com.extendedland.com
extendedland.com
*.extendedland.com
*.demo.giftforyou.it
giftforyou.it
*.giftforyou.it
memesense.cc
*.memesense.cc
*.ww25.memesense.cc
*.ww38.memesense.cc
*.0a9bd58c-fdc2-4def-98b5-7982325d8311.pasosdevida.org
*.0c47d143-30dd-46d8-bf7f-6df090686d26.pasosdevida.org
*.855611d8-b42b-405f-aeea-f5b58813440c.pasosdevida.org
*.admin.pasosdevida.org
*.api.pasosdevida.org
*.app.pasosdevida.org
*.assets.pasosdevida.org
*.autoconfig.pasosdevida.org
*.autodiscover.pasosdevida.org
*.backup.pasosdevida.org
*.bluradio.pasosdevida.org
*.cfakzynj.pasosdevida.org
*.com.pasosdevida.org
*.cpanel.pasosdevida.org
*.cpcalendars.pasosdevida.org
*.cpcontacts.pasosdevida.org
*.demo.pasosdevida.org
*.dev.pasosdevida.org
*.ews.pasosdevida.org
*.ftp.pasosdevida.org
*.hostmaster.pasosdevida.org
*.jrxtspym.pasosdevida.org
*.localhost.pasosdevida.org
*.m.pasosdevida.org
*.mail.pasosdevida.org
*.mariaauxiliovelez.pasosdevida.org
*.members.pasosdevida.org
*.monica.pasosdevida.org
*.nnikcm.pasosdevida.org
pasosdevida.org
*.pasosdevida.org
*.periodista.pasosdevida.org
*.shop.pasosdevida.org
*.terapias.pasosdevida.org
*.test.pasosdevida.org
*.uat.pasosdevida.org
*.webdisk.pasosdevida.org
*.webmail.pasosdevida.org
*.wwwnews.pasosdevida.org
*.hostmaster.rugsauction.com
rugsauction.com
*.rugsauction.com
*.sitemaps.rugsauction.com
*.www.rugsauction.com
summitdept.com
*.summitdept.com
*.ww38.summitdept.com
*.backup.xx4416.wtf
*.bot.xx4416.wtf
*.dashboard.xx4416.wtf
*.demo.xx4416.wtf
*.dev.xx4416.wtf
*.mail.xx4416.wtf
*.mailer.xx4416.wtf
*.marketing.xx4416.wtf
*.secure.xx4416.wtf
*.shop.xx4416.wtf
*.staging.xx4416.wtf
*.test.xx4416.wtf
*.uat.xx4416.wtf
*.v2.xx4416.wtf
xx4416.wtf
*.xx4416.wtf
Other domains in certificate