Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=giftforyou.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 09, 2026
Valid Until
July 08, 2026 39 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B4:0C:EC:CA:A8:10:C4:47:9D:2B:B6:88:3B:30:ED:5E:74:0C:08:0D:EC:08:85:08:07:CE:DC:9B:B6:00:EC:B2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
aheaur.com *.aheaur.com *.gpt.aheaur.com

Other domains in certificate

101people.com *.101people.com *.com.101people.com *.xyz.101people.com
apkinjectors.com *.apkinjectors.com *.ww38.apkinjectors.com
buenprovecho.me *.buenprovecho.me *.ww38.buenprovecho.me
dementoni.com *.dementoni.com *.fr.dementoni.com *.www.dementoni.com
*.com.extendedland.com extendedland.com *.extendedland.com
*.demo.giftforyou.it giftforyou.it *.giftforyou.it
memesense.cc *.memesense.cc *.ww25.memesense.cc *.ww38.memesense.cc
*.0a9bd58c-fdc2-4def-98b5-7982325d8311.pasosdevida.org *.0c47d143-30dd-46d8-bf7f-6df090686d26.pasosdevida.org *.855611d8-b42b-405f-aeea-f5b58813440c.pasosdevida.org *.admin.pasosdevida.org *.api.pasosdevida.org *.app.pasosdevida.org *.assets.pasosdevida.org *.autoconfig.pasosdevida.org *.autodiscover.pasosdevida.org *.backup.pasosdevida.org *.bluradio.pasosdevida.org *.cfakzynj.pasosdevida.org *.com.pasosdevida.org *.cpanel.pasosdevida.org *.cpcalendars.pasosdevida.org *.cpcontacts.pasosdevida.org *.demo.pasosdevida.org *.dev.pasosdevida.org *.ews.pasosdevida.org *.ftp.pasosdevida.org *.hostmaster.pasosdevida.org *.jrxtspym.pasosdevida.org *.localhost.pasosdevida.org *.m.pasosdevida.org *.mail.pasosdevida.org *.mariaauxiliovelez.pasosdevida.org *.members.pasosdevida.org *.monica.pasosdevida.org *.nnikcm.pasosdevida.org pasosdevida.org *.pasosdevida.org *.periodista.pasosdevida.org *.shop.pasosdevida.org *.terapias.pasosdevida.org *.test.pasosdevida.org *.uat.pasosdevida.org *.webdisk.pasosdevida.org *.webmail.pasosdevida.org *.wwwnews.pasosdevida.org
*.hostmaster.rugsauction.com rugsauction.com *.rugsauction.com *.sitemaps.rugsauction.com *.www.rugsauction.com
summitdept.com *.summitdept.com *.ww38.summitdept.com
*.backup.xx4416.wtf *.bot.xx4416.wtf *.dashboard.xx4416.wtf *.demo.xx4416.wtf *.dev.xx4416.wtf *.mail.xx4416.wtf *.mailer.xx4416.wtf *.marketing.xx4416.wtf *.secure.xx4416.wtf *.shop.xx4416.wtf *.staging.xx4416.wtf *.test.xx4416.wtf *.uat.xx4416.wtf *.v2.xx4416.wtf xx4416.wtf *.xx4416.wtf