Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=realestatealbania.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B5:DD:CC:AE:30:AE:61:D3:8E:4F:C2:67:08:FE:14:DE:9D:AB:BA:B8:24:E6:FD:05:B4:3C:0B:9C:37:84:D6:AD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
securitylab.top
*.securitylab.top
sdkeller.com.cn
*.sdkeller.com.cn
real-price.info
*.real-price.info
realestatealbania.it
*.realestatealbania.it
recruitersoncall.com
*.recruitersoncall.com
redadvertising.top
*.redadvertising.top
redevelopment.it
*.redevelopment.it
redirector.co
*.redirector.co
regameshop.xyz
*.regameshop.xyz
rejection.it
*.rejection.it
rejybb.cc
*.rejybb.cc
rentascooter.it
*.rentascooter.it
reten.it
*.reten.it
reuestatest.com
*.reuestatest.com
reviewgridzone.com
*.reviewgridzone.com
rickthompsonwv.com
*.rickthompsonwv.com
roach.it
*.roach.it
ronaragaronioasdalree.cyou
*.ronaragaronioasdalree.cyou
roofingmacon.com
*.roofingmacon.com
roundtableproductions.net
*.roundtableproductions.net
royalbank.it
*.royalbank.it
rumahhook.com
*.rumahhook.com
savepin.org
*.savepin.org
sbteonline.in
*.sbteonline.in
scancer.top
*.scancer.top
scottsdalecdm.com
*.scottsdalecdm.com
scwatch.net
*.scwatch.net
searchcakewalkio.com
*.searchcakewalkio.com
sell-my-stuff-jp.click
*.sell-my-stuff-jp.click
selvinomkt.sbs
*.selvinomkt.sbs
sendup.it
*.sendup.it
serena.clinic
*.serena.clinic
seriouslyinjured.org
*.seriouslyinjured.org
servicetechonline.it
*.servicetechonline.it
sgadvertising.top
*.sgadvertising.top
shlippy.com
*.shlippy.com
shovels.it
*.shovels.it
showbox.bio
*.showbox.bio
sici.it
*.sici.it
sidrachai.com
*.sidrachai.com
skyinternet.it
*.skyinternet.it
slwslf.com
*.slwslf.com
smh90102.cc
*.smh90102.cc
smssignale.com
*.smssignale.com
softside.it
*.softside.it
Other domains in certificate