Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=fotoseleb.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026 81 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:3A:54:F1:06:6E:8E:76:24:32:06:43:3C:46:2C:67:23:D3:85:99:13:C4:F9:7B:D5:D6:83:A6:4B:78:AE:85
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
pinterewt.com *.pinterewt.com *.admin.pinterewt.com *.api.pinterewt.com *.ar.pinterewt.com *.argo.pinterewt.com *.au.pinterewt.com *.backend.pinterewt.com *.blog.pinterewt.com *.bot.pinterewt.com *.br.pinterewt.com *.chart.pinterewt.com *.de.pinterewt.com *.es.pinterewt.com *.fdwslworkflow.pinterewt.com *.gwlb.pinterewt.com *.home.pinterewt.com *.hostmaster.pinterewt.com *.in.pinterewt.com *.integration.pinterewt.com *.jp.pinterewt.com *.kuglawwww.pinterewt.com *.metric.pinterewt.com *.mix.pinterewt.com *.mx.pinterewt.com *.notexistsapp.pinterewt.com *.portal.pinterewt.com *.remote.pinterewt.com *.shop.pinterewt.com *.sitemap.pinterewt.com *.sitemaps.pinterewt.com *.superset.pinterewt.com *.szpiaocmwyforums.pinterewt.com *.temp.pinterewt.com *.test.pinterewt.com *.uat-ai.pinterewt.com *.wiki.pinterewt.com *.workflow.pinterewt.com *.ww.pinterewt.com *.www-pinterest-com-edgekey-staging-net.pinterewt.com *.www-pinterewt-com-edgekey-staging-net.pinterewt.com *.www.pinterewt.com

Other domains in certificate

*.4egeuw.8oa8h.com 8oa8h.com *.8oa8h.com *.rd.8oa8h.com *.rds.8oa8h.com *.rdweb.8oa8h.com *.remote.8oa8h.com *.wildcard.8oa8h.com
bowlingscholarships.org *.bowlingscholarships.org *.m.bowlingscholarships.org *.rd.bowlingscholarships.org *.rds.bowlingscholarships.org *.rdweb.bowlingscholarships.org *.remote.bowlingscholarships.org
*.autodiscover.fotoseleb.com *.cpanel.fotoseleb.com *.cpcontacts.fotoseleb.com fotoseleb.com *.fotoseleb.com *.hot.fotoseleb.com *.localhost.fotoseleb.com *.m.fotoseleb.com *.mail.fotoseleb.com *.smtp.fotoseleb.com *.whm.fotoseleb.com *.wildcard.fotoseleb.com
*.api.smaltimentorifiutielettronici.com *.app.smaltimentorifiutielettronici.com *.argo.smaltimentorifiutielettronici.com smaltimentorifiutielettronici.com *.smaltimentorifiutielettronici.com *.superset.smaltimentorifiutielettronici.com
*.backend.takeitback.it *.intelligence.takeitback.it *.notexistsadmin.takeitback.it *.notexistsapi.takeitback.it *.superset.takeitback.it takeitback.it *.takeitback.it *.www.takeitback.it
*.m.xn--54q537d1hg.com *.wildcard.xn--54q537d1hg.com xn--54q537d1hg.com *.xn--54q537d1hg.com
*.wildcard.yscode.com yscode.com *.yscode.com