87/100 SECURITY SCORE

Detected Technologies

Certificate Information

Subject
C=IT, ST=Milano, L=Milano, O=Luxottica Group S.p.A., CN=img-b2c.luxottica.com
Issuer
C=US, O=DigiCert Inc, CN=DigiCert Global G3 TLS ECC SHA384 2020 CA1
Valid From
December 05, 2025
Valid Until
December 07, 2026 288 days
Public Key
ECDSA 256 bit (P-256) Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
90:04:56:4C:45:C2:93:5F:1E:86:60:F8:74:B2:37:8B:04:5F:01:B6:5B:52:EE:5F:05:45:4C:D8:29:BE:98:27
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Weak
frame-ancestors Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Excellent
Deny
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Significantly strengthen CSP directives
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
assets.framesdirect.com assets2.framesdirect.com media.framesdirect.com

Other domains in certificate

assets.alainmikli.com assets2.alainmikli.com media.alainmikli.com
assets.arnette.com assets2.arnette.com media.arnette.com
assets.clearly.ca assets2.clearly.ca media.clearly.ca
assets.clearly.co.nz assets2.clearly.co.nz media.clearly.co.nz
assets.clearly.com.au assets2.clearly.com.au media.clearly.com.au
media-my.essilorluxottica.com.cn myluxottica-im2.essilorluxottica.com.cn
assets.contactsdirect.com assets2.contactsdirect.com media.contactsdirect.com
assets.costadelmar.com assets2.costadelmar.com media.costadelmar.com
assets.davidclulow.com assets2.davidclulow.com media.davidclulow.com
media-lens.essilor.com media.essilor.com
assets.essilorluxottica.com assets2.essilorluxottica.com media-cltl.essilorluxottica.com media-onesight.essilorluxottica.com media.essilorluxottica.com media.one.essilorluxottica.com
assets.glasses.com assets2.glasses.com media.glasses.com
assets.grandvision.it assets2.grandvision.it media.grandvision.it
assets.impossible-frames.com assets2.impossible-frames.com media.impossible-frames.com
assets.impossible-frames.io assets2.impossible-frames.io media.impossible-frames.io
assets.laubmanandpank.com.au assets2.laubmanandpank.com.au media.laubmanandpank.com.au
assets.lenscrafters.com assets2.lenscrafters.com media.lenscrafters.com
assets-eln1.luxottica.com assets2-eln1.luxottica.com img-b2c.luxottica.com media-eln1.luxottica.com media-housebrands.luxottica.com media-multiplatform.luxottica.com media-multiplatformh2.luxottica.com
assets.nativeyewear.com media.nativeyewear.com
assets.oakley.com assets2.oakley.com media.oakley.com
assets.oakleysi.com media.oakleysi.com
assets.oliverpeoples.com assets2.oliverpeoples.com media.oliverpeoples.com
assets.opsm.com assets2.opsm.com media.opsm.com
assets.oticascarol.com.br assets2.oticascarol.com.br media.oticascarol.com.br
assets.persol.com assets2.persol.com media.persol.com
images.ray-ban.com images2.ray-ban.com media.ray-ban.com
assets.salmoiraghievigano.it assets2.salmoiraghievigano.it media.salmoiraghievigano.it
assets.sunglasshut.com assets2.sunglasshut.com images.sunglasshut.com media.sunglasshut.com
assets.targetoptical.com assets2.targetoptical.com media.targetoptical.com
assets.transitions.com media.transitions.com
media-cneu-cms.visionx.solutions
assets.vogue-eyewear.com assets2.vogue-eyewear.com media.vogue-eyewear.com