76/100 SECURITY SCORE

Certificate Information

Subject
CN=recipesvio.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 22, 2026
Valid Until
August 20, 2026 78 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
14:FB:67:8B:AB:21:5C:DD:69:0C:48:A9:60:C4:1E:D3:03:AC:52:FF:5E:30:4D:BF:8F:F8:49:5C:62:D6:1B:17
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
brandgeneration.it *.brandgeneration.it *.citrixcloud.brandgeneration.it *.clientesvpn.brandgeneration.it *.cpanel.brandgeneration.it *.est-vpn.brandgeneration.it *.gp.brandgeneration.it *.man.brandgeneration.it *.mobileconnect.brandgeneration.it *.online.brandgeneration.it *.owa.brandgeneration.it *.pop.brandgeneration.it *.remoteon.brandgeneration.it *.vpngate.brandgeneration.it *.xapp.brandgeneration.it

Other domains in certificate

*.06ac74cc-736f-43ad-909f-5c162e45fa4a.c-froid.net *.887a359c-a067-405d-a521-51150fc33f9a.c-froid.net *.9ff79b54-b149-46c0-b623-1ace1177838f.c-froid.net *.admin.c-froid.net *.api.c-froid.net *.app.c-froid.net *.assets.c-froid.net c-froid.net *.c-froid.net *.correo.c-froid.net *.demo.c-froid.net *.dev.c-froid.net *.members.c-froid.net *.perm.c-froid.net *.server.c-froid.net *.smtp3.c-froid.net *.test.c-froid.net *.ww7.c-froid.net *.xoszccorreo.c-froid.net
*.com.douyinstatic.xyz douyinstatic.xyz *.douyinstatic.xyz
*.board.filestorage.it *.dashboards.filestorage.it *.demo.filestorage.it *.dev.filestorage.it filestorage.it *.filestorage.it *.webmail.filestorage.it
flopv.com *.flopv.com *.mailtest.flopv.com
*.42f414dc-6546-4b78-a895-110607c3cc04.mcgolem.finance *.admin.mcgolem.finance *.api.mcgolem.finance *.bot.mcgolem.finance *.ivtade.mcgolem.finance mcgolem.finance *.mcgolem.finance *.members.mcgolem.finance *.user.mcgolem.finance *.www.mcgolem.finance
*.321fe4cb-4daf-4f22-b1da-3f02ab48dd02.minkia.shop *.9382175f-78a0-4890-8a88-3a4881b756c8.minkia.shop *.app.minkia.shop *.external.minkia.shop *.intranet.minkia.shop minkia.shop *.minkia.shop *.my.minkia.shop *.public.minkia.shop *.sharepoint.minkia.shop
qob.it *.qob.it *.ru.qob.it *.vserv.qob.it *.www.qob.it
recipesvio.com *.recipesvio.com
*.app.smarthavenliving.com *.assets.smarthavenliving.com *.backup.smarthavenliving.com *.demo.smarthavenliving.com *.dev.smarthavenliving.com *.external.smarthavenliving.com *.my.smarthavenliving.com *.public.smarthavenliving.com *.r7w7fm.smarthavenliving.com *.share.smarthavenliving.com *.sharepoint.smarthavenliving.com smarthavenliving.com *.smarthavenliving.com *.uat.smarthavenliving.com *.www.smarthavenliving.com