Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=1028284d974bbc68a3681023.cc
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 02, 2026
Valid Until
May 03, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D9:5C:51:FC:40:40:9F:AC:8E:E2:B7:AC:3D:09:16:D9:52:AB:49:60:3F:61:9E:88:8E:BE:AF:42:72:6C:07:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
neomelodico.com
*.neomelodico.com
1028284d974bbc68a3681023.cc
*.1028284d974bbc68a3681023.cc
7qph6w7p.top
*.7qph6w7p.top
akunbom29toto.online
*.akunbom29toto.online
assatanati.com
*.assatanati.com
atelierimmobiliare.com
*.atelierimmobiliare.com
battled.com
*.battled.com
blank-space.online
*.blank-space.online
bodyandsoul.net
*.bodyandsoul.net
branchit.com
*.branchit.com
campionario.com
*.campionario.com
cav300.xyz
*.cav300.xyz
centridiaccoglienza.com
*.centridiaccoglienza.com
comunicazionionline.com
*.comunicazionionline.com
correggere.com
*.correggere.com
depresso.com
*.depresso.com
detroitrocks.com
*.detroitrocks.com
developertrends.com
*.developertrends.com
drifthunters.xyz
*.drifthunters.xyz
drknowexplica.com
*.drknowexplica.com
drudgreport.com
*.drudgreport.com
eternita.com
*.eternita.com
farooqui.dev
*.farooqui.dev
fioraia.com
*.fioraia.com
fw-vegas.online
*.fw-vegas.online
graficamestre.com
*.graficamestre.com
indicifinanziari.com
*.indicifinanziari.com
janiah.net
*.janiah.net
jaslyn.net
*.jaslyn.net
jenniferlaycock.com
*.jenniferlaycock.com
kidsbsafe.com
*.kidsbsafe.com
lartenelparquet.com
*.lartenelparquet.com
morettina.com
*.morettina.com
municipalnet.com
*.municipalnet.com
naughty-nikki.com
*.naughty-nikki.com
navica.net
*.navica.net
hetsptt.net.cn
*.hetsptt.net.cn
nolegio.com
*.nolegio.com
offenbachammain.org
*.offenbachammain.org
ombrelloni.com
*.ombrelloni.com
organizzatoridieventi.com
*.organizzatoridieventi.com
presenzano.com
*.presenzano.com
quinzieme.com
*.quinzieme.com
ricaricaelettricaautomobili.com
*.ricaricaelettricaautomobili.com
sinerga.com
*.sinerga.com
Other domains in certificate