Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=saporitipicidipuglia.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 27, 2026
Valid Until
July 26, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
98:10:79:BB:4B:B1:8B:DB:42:F6:66:4F:BB:10:92:11:CB:17:4E:36:1D:CB:B8:0A:F8:2E:CC:E0:AB:04:4B:90
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
borxy.software
*.borxy.software
36836.vip
*.36836.vip
*.x.36836.vip
assistinvestments.com
*.assistinvestments.com
bcgm168.cn
*.bcgm168.cn
betcom365.live
*.betcom365.live
bibzw.auction
*.bibzw.auction
bulkbees.in
*.bulkbees.in
buy-now-pay-later-cars-mill-061.sbs
*.buy-now-pay-later-cars-mill-061.sbs
careerfoldpro.live
*.careerfoldpro.live
careerquestanchor.live
*.careerquestanchor.live
cf117.com
*.cf117.com
chicthrive.shop
*.chicthrive.shop
coffeeseniors.com
*.coffeeseniors.com
debtfastlane.com
*.debtfastlane.com
dybyqh.top
*.dybyqh.top
espyf.top
*.espyf.top
*.comune.mk-yasmin777.bet
mk-yasmin777.bet
*.mk-yasmin777.bet
*.hostmaster.montenegro-muehle.de
montenegro-muehle.de
*.montenegro-muehle.de
*.www.montenegro-muehle.de
o2z92dp.cc
*.o2z92dp.cc
personal-loans-it-9615.sbs
*.personal-loans-it-9615.sbs
perverthotel.com
*.perverthotel.com
*.admin.playzet88.biz
*.api.playzet88.biz
playzet88.biz
*.playzet88.biz
*.rustore.playzet88.biz
polishedperegrinations.live
*.polishedperegrinations.live
revolvefyxerclash.info
*.revolvefyxerclash.info
*.mail.saporitipicidipuglia.com
*.mail2.saporitipicidipuglia.com
saporitipicidipuglia.com
*.saporitipicidipuglia.com
*.www.saporitipicidipuglia.com
*.admin.studyworks.it
*.analytic.studyworks.it
*.analytics.studyworks.it
*.app.studyworks.it
*.bi.studyworks.it
*.chart.studyworks.it
*.owa.studyworks.it
*.redash.studyworks.it
*.report.studyworks.it
*.staging.studyworks.it
studyworks.it
*.studyworks.it
*.superset.studyworks.it
*.backend.travelpeople.it
*.bi.travelpeople.it
*.destinazioneeuropei.travelpeople.it
*.itwww.travelpeople.it
*.oltremarefrancese.travelpeople.it
*.rneeivincilemaldive.travelpeople.it
travelpeople.it
*.travelpeople.it
unenial.com
*.unenial.com
unenial.info
*.unenial.info
vvv-7977.tv
*.vvv-7977.tv
wenninstedt.de
*.wenninstedt.de
*.ww38.wenninstedt.de
Other domains in certificate