Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=splendo.it
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 29, 2026
Valid Until
August 27, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
72:7E:CE:A5:66:C7:F5:36:B8:F6:26:B4:5D:BF:3C:9F:58:5C:CF:2E:B6:B5:29:77:F0:42:54:96:04:C0:A8:85
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
tkcd.com
*.tkcd.com
*.login.tkcd.com
*.vpn1.tkcd.com
*.vqsvm.tkcd.com
*.65a6f5f-658f-47b2-99fa-2dfd7542aeac.harba-digital.info
*.a.harba-digital.info
*.api.harba-digital.info
*.backup.harba-digital.info
*.bzyremarketing.harba-digital.info
*.dashboard.harba-digital.info
*.dev.harba-digital.info
*.e65a6f5f-658f-47b2-99fa-2dfd7542aeac.harba-digital.info
harba-digital.info
*.harba-digital.info
*.marketing.harba-digital.info
*.qa.harba-digital.info
*.stg.harba-digital.info
*.uat.harba-digital.info
*.v1.harba-digital.info
*.v2.harba-digital.info
*.www.harba-digital.info
*.backup.noctabet654.com
noctabet654.com
*.noctabet654.com
*.uat.noctabet654.com
*.w9qfqv.noctabet654.com
passivesummit.com
*.passivesummit.com
*.vps.passivesummit.com
*.analytic.splendo.it
*.mx.splendo.it
splendo.it
*.splendo.it
*.visual.splendo.it
*.webmail.splendo.it
*.admin.tnhq.net
*.cf.tnhq.net
*.dl.tnhq.net
*.mail.tnhq.net
*.meradmin.tnhq.net
*.news1.tnhq.net
*.news3.tnhq.net
*.sp1.tnhq.net
*.tn.tnhq.net
tnhq.net
*.tnhq.net
*.adelchiferrari.wildxin.com
*.agsolution.wildxin.com
*.americanbicycle.wildxin.com
*.art-transit.wildxin.com
*.az.wildxin.com
*.bapfrance.wildxin.com
*.bctransport.wildxin.com
*.busigroup.wildxin.com
*.cartoeditsrl.wildxin.com
*.colbertcounty.wildxin.com
*.dkmediaconsulting.wildxin.com
*.eaglescliffemedicalpractice.wildxin.com
*.enoa.wildxin.com
*.everextest.wildxin.com
*.exchangechambers.wildxin.com
*.flwater.wildxin.com
*.forever.wildxin.com
*.graphics.wildxin.com
*.he-log.wildxin.com
*.hwsne.wildxin.com
*.irmaderobbio.wildxin.com
*.mcu.wildxin.com
*.micasas.wildxin.com
*.mivv.wildxin.com
*.ncnurturecenter.wildxin.com
*.omegamarketing.wildxin.com
*.propertysolutions.wildxin.com
*.queivinstalla.wildxin.com
*.readysetgo.wildxin.com
*.sawiday.wildxin.com
*.temperonipaolo.wildxin.com
*.totalrr.wildxin.com
*.uniroma3.wildxin.com
*.usaycompare.wildxin.com
*.venus-spa.wildxin.com
*.vidc.wildxin.com
wildxin.com
*.wildxin.com
*.wintmedical.wildxin.com
*.ww25.wildxin.com
*.w.xn--zqs19t.com
xn--zqs19t.com
*.xn--zqs19t.com
Other domains in certificate