Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=hubporn.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F3:F4:CE:56:1D:9C:4D:AA:7A:DE:1B:34:65:61:F6:D4:93:38:1D:6A:4D:6B:58:79:CF:10:E3:AB:58:35:BC:F5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
mesoexpress.com
*.mesoexpress.com
*.v1.mesoexpress.com
hubporn.it
*.hubporn.it
hwt.it
*.hwt.it
hysterie.it
*.hysterie.it
ilpalco.it
*.ilpalco.it
imparziali.it
*.imparziali.it
indiahomeinsurance.in
*.indiahomeinsurance.in
innovativefarming.in
*.innovativefarming.in
isaacamr.com
*.isaacamr.com
itqanstor.shop
*.itqanstor.shop
iwillpost.it
*.iwillpost.it
jasminomkt.sbs
*.jasminomkt.sbs
jgw.it
*.jgw.it
jk5j8x.top
*.jk5j8x.top
jogabem777.com
*.jogabem777.com
journalistes.it
*.journalistes.it
journeyandtravelers.live
*.journeyandtravelers.live
joyfulweddingbliss.sbs
*.joyfulweddingbliss.sbs
juvoco.com
*.juvoco.com
k12de.us
*.k12de.us
kakeronon.com
*.kakeronon.com
kartbahn.it
*.kartbahn.it
kdtbc.pro
*.kdtbc.pro
thehumble.it
*.thehumble.it
therickypowell.co
*.therickypowell.co
timethreads.shop
*.timethreads.shop
timur99-west.com
*.timur99-west.com
tment.net
*.tment.net
tobrew.it
*.tobrew.it
top10bahis.com
*.top10bahis.com
tradenetworkhub.cyou
*.tradenetworkhub.cyou
trader-ai-review.cyou
*.trader-ai-review.cyou
traderai.cyou
*.traderai.cyou
tradixus700ai.com
*.tradixus700ai.com
tradixusai.com
*.tradixusai.com
trapstarimpex.com
*.trapstarimpex.com
turismoromaedintorni.it
*.turismoromaedintorni.it
typographical.it
*.typographical.it
u888bet.click
*.u888bet.click
urbanfitnessexperience.run
*.urbanfitnessexperience.run
urbansportzone.sbs
*.urbansportzone.sbs
useretellaiteam.com
*.useretellaiteam.com
uuu8392.top
*.uuu8392.top
vendereininternet.com
*.vendereininternet.com
Other domains in certificate