Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=howtocalculate.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
99:53:E4:AC:BC:5B:5A:6B:56:80:25:D2:20:60:0E:4E:CB:12:2B:43:9D:41:11:80:57:5F:4A:FA:86:B0:1E:06
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
mecerwise.com
*.mecerwise.com
howtocalculate.it
*.howtocalculate.it
howtodraw.it
*.howtodraw.it
hypersonic.it
*.hypersonic.it
i6zw.com
*.i6zw.com
idivani.it
*.idivani.it
iegmu.tv
*.iegmu.tv
ieil15k.shop
*.ieil15k.shop
ifif774.cc
*.ifif774.cc
ignari.com
*.ignari.com
illavoratore.it
*.illavoratore.it
ilnovecento.it
*.ilnovecento.it
ilrisparmiatore.it
*.ilrisparmiatore.it
iltuofuturo.it
*.iltuofuturo.it
ilvaticano.it
*.ilvaticano.it
immobiliareveneto.it
*.immobiliareveneto.it
increased.it
*.increased.it
independentmusic.it
*.independentmusic.it
indonesiani.it
*.indonesiani.it
infantgearexchange.com
*.infantgearexchange.com
informationsecurity.it
*.informationsecurity.it
internetunited.it
*.internetunited.it
invincible.it
*.invincible.it
italianaenergetica.it
*.italianaenergetica.it
jeansindustry.it
*.jeansindustry.it
kiligsuper.com
*.kiligsuper.com
l1b1st.com
*.l1b1st.com
lacassandra.it
*.lacassandra.it
lenders.it
*.lenders.it
lepillole.it
*.lepillole.it
linkandalanthor138.sbs
*.linkandalanthor138.sbs
liquidartgallery.it
*.liquidartgallery.it
livinghispromise.com
*.livinghispromise.com
mangi.it
*.mangi.it
mathclassroom.it
*.mathclassroom.it
menorwomen.com
*.menorwomen.com
mirabilis.it
*.mirabilis.it
miscuglio.it
*.miscuglio.it
mitologiagriega.org
*.mitologiagriega.org
mmbx20.cc
*.mmbx20.cc
mobiletarget.it
*.mobiletarget.it
mpo99idhin.com
*.mpo99idhin.com
mummersmardigras.com
*.mummersmardigras.com
muru.it
*.muru.it
nishu.it
*.nishu.it
Other domains in certificate