Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pavimentiparquet.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026
41 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C3:40:FD:3F:EE:EA:20:F5:99:E0:89:BD:4A:FA:B8:77:DE:A6:FB:84:F6:1E:77:B9:E1:A6:5C:68:C3:C5:CA:07
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
makerightdecision.com
*.makerightdecision.com
*.e.makerightdecision.com
867838.lol
*.867838.lol
*.imap3d.867838.lol
939934.lol
*.939934.lol
*.web.939934.lol
atlas-bbq.com
*.atlas-bbq.com
*.ww25.atlas-bbq.com
*.www.atlas-bbq.com
clockhousecc.org.uk
*.clockhousecc.org.uk
*.ww12.clockhousecc.org.uk
*.www.clockhousecc.org.uk
consumergoal.com
*.consumergoal.com
*.webmail.consumergoal.com
*.www.consumergoal.com
*.admin.harennagroup.com
*.api.harennagroup.com
*.cms.harennagroup.com
harennagroup.com
*.harennagroup.com
ipnext.jp
*.ipnext.jp
*.ww25.ipnext.jp
jebzdzidy.com
*.jebzdzidy.com
*.log.jebzdzidy.com
*.www.jebzdzidy.com
jones.so
*.jones.so
*.nora.jones.so
*.www.jones.so
knoxvillefootballclub.org
*.knoxvillefootballclub.org
kwuu50.icu
*.kwuu50.icu
*.ww25.kwuu50.icu
newbalanxe.com
*.newbalanxe.com
*.random.newbalanxe.com
*.hostmaster.pavimentiparquet.it
pavimentiparquet.it
*.pavimentiparquet.it
*.www.pavimentiparquet.it
*.45c6c974-7228-4750-a2fd-8816ebbc75a5.picapica.shop
*.4752fcbd-bcdc-43a7-9d2f-9caf461824cc.picapica.shop
*.66ebeec7-617e-49c3-af36-c6f9c8af3180.picapica.shop
*.api.picapica.shop
*.app.picapica.shop
*.dev.picapica.shop
*.eposta.picapica.shop
*.hostmaster.picapica.shop
picapica.shop
*.picapica.shop
*.rustore.picapica.shop
*.staging.picapica.shop
*.test.picapica.shop
*.analytics.powergain.it
*.analyze.powergain.it
*.api.powergain.it
*.hotfix.powergain.it
*.notexistsbackend.powergain.it
powergain.it
*.powergain.it
*.forecast.propertyvalue.it
propertyvalue.it
*.propertyvalue.it
*.spacetreescoolercommunity.propertyvalue.it
*.treescoolercommunity.propertyvalue.it
*.visual.propertyvalue.it
*.api.ramona.it
*.est-vpn.ramona.it
*.hostmaster.ramona.it
*.mobileconnect.ramona.it
ramona.it
*.ramona.it
*.rds.ramona.it
*.autodiscover.rbrdbdvivi.com
rbrdbdvivi.com
*.rbrdbdvivi.com
*.mx.sacknseat.it
sacknseat.it
*.sacknseat.it
schelp.store
*.schelp.store
Other domains in certificate