Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cantons.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:67:8F:E2:86:5C:9D:D6:38:6E:37:8B:E7:01:2F:27:F7:1D:C0:2E:A6:B0:4F:33:72:AB:FD:07:C9:CC:F3:10
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
gurn.net
*.gurn.net
cantons.it
*.cantons.it
cattivo.it
*.cattivo.it
cellularieaccessori.it
*.cellularieaccessori.it
centrato.it
*.centrato.it
centromobile.it
*.centromobile.it
citysearch.it
*.citysearch.it
ckulu.pro
*.ckulu.pro
cleanandgreen.it
*.cleanandgreen.it
clxf.me
*.clxf.me
comfortsupport.co.uk
*.comfortsupport.co.uk
compriamo.it
*.compriamo.it
considerato.it
*.considerato.it
consumercred.it
*.consumercred.it
cosiddetti.it
*.cosiddetti.it
cuoche.it
*.cuoche.it
cyberclub.it
*.cyberclub.it
dananet.com
*.dananet.com
datebook.it
*.datebook.it
dialettico.it
*.dialettico.it
didyoumean.it
*.didyoumean.it
digitalcinema.it
*.digitalcinema.it
dinners.it
*.dinners.it
domainfree.it
*.domainfree.it
donnemature.it
*.donnemature.it
druk.it
*.druk.it
ellequadro.net
*.ellequadro.net
elmbjp.pro
*.elmbjp.pro
emojis.it
*.emojis.it
ephone.it
*.ephone.it
ewbdw.net
*.ewbdw.net
excelmap.in
*.excelmap.in
familyassociation.it
*.familyassociation.it
fansout.it
*.fansout.it
fashiongirls.it
*.fashiongirls.it
fervently.it
*.fervently.it
financialcoaching.it
*.financialcoaching.it
fitandmind.it
*.fitandmind.it
fitdrop.shop
*.fitdrop.shop
fitnessfactory.it
*.fitnessfactory.it
fixers.it
*.fixers.it
foodguide.it
*.foodguide.it
fuggi.it
*.fuggi.it
fulled.it
*.fulled.it
funka.it
*.funka.it
Other domains in certificate