Cached · just now
91/100 SECURITY SCORE

Certificate Information

Subject
CN=kiso.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 04, 2026
Valid Until
July 03, 2026 32 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:E6:B5:6F:55:9C:47:9C:8D:1F:DC:CB:89:96:CB:FF:CA:80:D5:9C:C0:EF:B0:21:D9:A9:F4:3C:7D:05:AC:96
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(), midi=(), sync-xhr=(); +6 more
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ihsll.com *.ihsll.com *.comune.ihsll.com *.mx.ihsll.com

Other domains in certificate

americantemp.com *.americantemp.com *.ww25.americantemp.com *.ww38.americantemp.com
cadiente.com *.cadiente.com *.subscribe.cadiente.com *.ww25.cadiente.com
femidea.com *.femidea.com *.ww17.femidea.com *.ww25.femidea.com
*.ci.hotdudewithdog.com *.domains.hotdudewithdog.com hotdudewithdog.com *.hotdudewithdog.com *.hotel.hotdudewithdog.com *.jenkins.hotdudewithdog.com *.wiki.hotdudewithdog.com *.ww25.hotdudewithdog.com
*.hostmaster.justcroatia.com justcroatia.com *.justcroatia.com *.www.justcroatia.com
*.hostmaster.kiso.it kiso.it *.kiso.it *.mx.kiso.it *.remote.kiso.it
*.8d63c766-f0c7-4513-af49-284dde056aed.mailspree.com *.admin.mailspree.com *.aniqmail.mailspree.com *.api.mailspree.com *.app.mailspree.com *.assets.mailspree.com *.blog.mailspree.com *.comet.mailspree.com *.dbcaa5db-0631-432a-94ad-6db11e113db4.mailspree.com *.demo.mailspree.com *.dev.mailspree.com *.hostmaster.mailspree.com *.m.mailspree.com *.mailbox.mailspree.com mailspree.com *.mailspree.com *.mta-sts.mailspree.com *.pipeline.mailspree.com *.rustore.mailspree.com *.shop.mailspree.com *.staging.mailspree.com *.test.mailspree.com
marionette.it *.marionette.it *.private.marionette.it *.sandbox.marionette.it
*.autodiscover.mytruck.be *.chart.mytruck.be *.comm8-47e5-a8b5-4b6ca426bab7.mytruck.be *.dashboard.mytruck.be *.dev.mytruck.be *.email.mytruck.be *.emv1.mytruck.be *.eqqkqowa.mytruck.be *.hostmaster.mytruck.be *.imap.mytruck.be mytruck.be *.mytruck.be *.owa.mytruck.be *.reports.mytruck.be *.stock.mytruck.be *.superset.mytruck.be *.voorraad.mytruck.be *.webmail.mytruck.be *.www.mytruck.be
*.admin.ogw.in ogw.in *.ogw.in
sgrmachine.cn *.sgrmachine.cn *.share.sgrmachine.cn *.tm.sgrmachine.cn *.www.sgrmachine.cn
*.kmbzfeqgfnads.vavadapd7.com *.m.vavadapd7.com vavadapd7.com *.vavadapd7.com