Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=giddy.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AE:A5:1E:FB:8A:FA:D0:DC:7C:D4:67:CA:DB:97:A2:C7:00:67:4E:1D:2C:43:81:F9:0D:C6:07:76:BF:B0:C2:DB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
mcloudapp.com
*.mcloudapp.com
giddy.it
*.giddy.it
glutenfreerecipe.it
*.glutenfreerecipe.it
gofourfoldglobal.com
*.gofourfoldglobal.com
goodeats.it
*.goodeats.it
greenmountain.it
*.greenmountain.it
helloplus112.com
*.helloplus112.com
henchmen.it
*.henchmen.it
hfh82.top
*.hfh82.top
hoteltonetti.it
*.hoteltonetti.it
huangguan.it
*.huangguan.it
ikpgw.tv
*.ikpgw.tv
il2.it
*.il2.it
ilsolare.it
*.ilsolare.it
impresaedilizia.it
*.impresaedilizia.it
inroom.it
*.inroom.it
insensato.it
*.insensato.it
interlakenpro.com
*.interlakenpro.com
intermec.it
*.intermec.it
internetcourse.it
*.internetcourse.it
isd.it
*.isd.it
isidro.it
*.isidro.it
italiafrancia.it
*.italiafrancia.it
italianpokerplayers.it
*.italianpokerplayers.it
ittierre.it
*.ittierre.it
justplug.it
*.justplug.it
kilat69pik.com
*.kilat69pik.com
lionhead.it
*.lionhead.it
lise.it
*.lise.it
liveslot.it
*.liveslot.it
logre.it
*.logre.it
lovetender.it
*.lovetender.it
luxury-rehab-674993750.click
*.luxury-rehab-674993750.click
macminiforums.com
*.macminiforums.com
maratonando.it
*.maratonando.it
marmer.it
*.marmer.it
mediapad.it
*.mediapad.it
partnershipinsurance.in
*.partnershipinsurance.in
pccrafts.com
*.pccrafts.com
pgwrq.cc
*.pgwrq.cc
pgwrx.cc
*.pgwrx.cc
phoakutn.com
*.phoakutn.com
plsweb.net
*.plsweb.net
raw28.top
*.raw28.top
rdhke.pro
*.rdhke.pro
Other domains in certificate