Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ilderico.cfd
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:BD:A9:97:45:CD:70:E8:30:FE:08:52:84:1F:6C:A0:A9:57:95:1D:BA:3E:BA:0E:58:1B:F7:4B:21:0E:25:0D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
lastchance.it
*.lastchance.it
ilderico.cfd
*.ilderico.cfd
illuminateretail.com
*.illuminateretail.com
imoandarivniosdaltctrl.cyou
*.imoandarivniosdaltctrl.cyou
imonivniosdaltgrid.shop
*.imonivniosdaltgrid.shop
improprio.it
*.improprio.it
inclusivefoodexplorers.food
*.inclusivefoodexplorers.food
innovativesportgear.cfd
*.innovativesportgear.cfd
investigativeexperts.com
*.investigativeexperts.com
invisiblebraces967707.icu
*.invisiblebraces967707.icu
iskamedaglasuvame.com
*.iskamedaglasuvame.com
javasy.com
*.javasy.com
jewelerontheroof.com
*.jewelerontheroof.com
jiuqiefsks1217.top
*.jiuqiefsks1217.top
jmnmonioasdbonnect.cyou
*.jmnmonioasdbonnect.cyou
jojorepairs.click
*.jojorepairs.click
jtaesthetics.com
*.jtaesthetics.com
junsui.it
*.junsui.it
justbrowsing.it
*.justbrowsing.it
k12nd.us
*.k12nd.us
kardinalindustriesth.com
*.kardinalindustriesth.com
kashiwa-bonding-360949126.click
*.kashiwa-bonding-360949126.click
katemiddleton.it
*.katemiddleton.it
keat.it
*.keat.it
kerassingawin.us
*.kerassingawin.us
kimlox.com
*.kimlox.com
king88bet.asia
*.king88bet.asia
kisud.world
*.kisud.world
kkaaaa.top
*.kkaaaa.top
knowhouse.it
*.knowhouse.it
korat99.org
*.korat99.org
koreanlyrics.com
*.koreanlyrics.com
l820.tv
*.l820.tv
learnhack.pro
*.learnhack.pro
ledgerfifirm.com
*.ledgerfifirm.com
ledgerfiinsights.com
*.ledgerfiinsights.com
lesartssaintcyprien.com
*.lesartssaintcyprien.com
lexingtonjewelry.com
*.lexingtonjewelry.com
lifecounseling.it
*.lifecounseling.it
liketoshare.it
*.liketoshare.it
limeon.it
*.limeon.it
lineabreve.it
*.lineabreve.it
liveinrome.it
*.liveinrome.it
lock-repair-261274337.click
*.lock-repair-261274337.click
lokekita.my
*.lokekita.my
Other domains in certificate