76/100 SECURITY SCORE

Certificate Information

Subject
CN=globaltarget.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 85 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:82:1E:A0:51:4A:E0:12:8E:59:0F:D7:8F:7F:D6:58:D5:7D:7A:48:D4:93:DA:9D:9C:74:D4:C0:9B:68:D3:31
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
gracerevolution.com *.gracerevolution.com *.random.gracerevolution.com

Other domains in certificate

2110.it *.2110.it *.exchangecorp.2110.it *.smtpa.2110.it
7645.net *.7645.net *.random.7645.net
al-maghreb.online *.al-maghreb.online *.imap.al-maghreb.online *.mail.al-maghreb.online
*.adlib.alzheimers.org *.alz.alzheimers.org alzheimers.org *.alzheimers.org *.blog.alzheimers.org *.brevard.alzheimers.org *.ku.alzheimers.org *.pwww.alzheimers.org *.smtp.alzheimers.org
babymoonmallorca.com *.babymoonmallorca.com *.mketvdesktops.babymoonmallorca.com *.office1.babymoonmallorca.com *.portal1.babymoonmallorca.com
*.api.bakulsosmed.online bakulsosmed.online *.bakulsosmed.online *.ww17.bakulsosmed.online
cinexcusas.com *.cinexcusas.com *.vexps.cinexcusas.com
*.access.escribano.com *.cisco.escribano.com escribano.com *.escribano.com *.patricia.escribano.com *.webdisk.escribano.com *.ww16.escribano.com
fgmpdav60i6y.store *.fgmpdav60i6y.store
*.comww25.fortbreak.com fortbreak.com *.fortbreak.com
*.exchange.globaltarget.it globaltarget.it *.globaltarget.it
*.360cm2.httpsk.com httpsk.com *.httpsk.com *.k.httpsk.com *.news.httpsk.com *.shop79885825.httpsk.com *.tikto.httpsk.com
missouriflights.com *.missouriflights.com *.vgirginamerica.missouriflights.com
olx89ok5.xyz *.olx89ok5.xyz
*.leser.orio.live orio.live *.orio.live
*.demo.painreliefpsoriaticarthritis.com painreliefpsoriaticarthritis.com *.painreliefpsoriaticarthritis.com
plytki.com *.plytki.com
portalegre.com *.portalegre.com
*.app.resign.it resign.it *.resign.it
*.autodiscover.revistadialecticacomunicativa.com revistadialecticacomunicativa.com *.revistadialecticacomunicativa.com
*.admin.schoologyy.com schoologyy.com *.schoologyy.com
*.mail.sextre.com sextre.com *.sextre.com *.ww25.sextre.com *.www.sextre.com
*.store.timbersredmond.com timbersredmond.com *.timbersredmond.com *.ww25.timbersredmond.com