Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=occhionudo.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5D:6C:ED:CF:A4:78:7A:E2:1F:84:18:F0:66:97:DE:D1:68:26:E8:AF:86:A4:E4:75:5E:D1:3D:84:78:6F:8E:D8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
listfact.com
*.listfact.com
klvnvh.pro
*.klvnvh.pro
legiones.it
*.legiones.it
lovechild.it
*.lovechild.it
luckpulse.top
*.luckpulse.top
luckycoin.pro
*.luckycoin.pro
luckyou.it
*.luckyou.it
medicalclinics.it
*.medicalclinics.it
metanet.it
*.metanet.it
multihost.it
*.multihost.it
musicby.it
*.musicby.it
myplaceinitaly.it
*.myplaceinitaly.it
occhionudo.com
*.occhionudo.com
omra.it
*.omra.it
padelcenter.it
*.padelcenter.it
pebble.it
*.pebble.it
plasov.com
*.plasov.com
playeasy.it
*.playeasy.it
pliny.it
*.pliny.it
plonor.com
*.plonor.com
plrreview.com
*.plrreview.com
plumbing-construction-470814182.click
*.plumbing-construction-470814182.click
pluswallet.it
*.pluswallet.it
plys.it
*.plys.it
pnyrk.pro
*.pnyrk.pro
poker.singles
*.poker.singles
pokervegas.it
*.pokervegas.it
politicus.it
*.politicus.it
polo188rtp2025.click
*.polo188rtp2025.click
predicting.it
*.predicting.it
redhumanistarbu.org
*.redhumanistarbu.org
savelucydesicenter.org
*.savelucydesicenter.org
sevensecondweightloss.com
*.sevensecondweightloss.com
sleepyhollowstablesllc.com
*.sleepyhollowstablesllc.com
thecall.it
*.thecall.it
timepro.it
*.timepro.it
toysandtoys.it
*.toysandtoys.it
trendygentleman.in
*.trendygentleman.in
verilege.com
*.verilege.com
w13721268.com
*.w13721268.com
w13721622.com
*.w13721622.com
wdbet500.org
*.wdbet500.org
whichone.it
*.whichone.it
wishesmsges.com
*.wishesmsges.com
xhaipoi.com
*.xhaipoi.com
Other domains in certificate