Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=quantabatteries.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
29:B2:A8:5E:EA:E1:C5:8F:F1:70:53:88:61:B3:8A:F3:70:1D:0D:55:F5:00:A5:08:A5:52:46:01:6C:4C:5C:13
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
shoulders.it
*.shoulders.it
bachaco.com
*.bachaco.com
*.office.bachaco.com
*.ra.bachaco.com
*.rdp.bachaco.com
*.sslvpn.bachaco.com
*.uogurm.bachaco.com
*.wp.bachaco.com
danda.net
*.danda.net
*.ftp.danda.net
*.sitemaps.danda.net
*.ww17.danda.net
*.y.danda.net
*.14baca27-a966-4832-81bc-a1b3b3c14681.extraz24.store
extraz24.store
*.extraz24.store
jadesola.com
*.jadesola.com
*.yibtk.jadesola.com
*.autodiscover.meios.com
*.desktop.meios.com
meios.com
*.meios.com
*.mobileconnect.meios.com
mybichon.com
*.mybichon.com
*.sitemaps.mybichon.com
*.backup.pulcini.com
pulcini.com
*.pulcini.com
*.ww1.pulcini.com
quantabatteries.com
*.quantabatteries.com
*.sslvpn.quantabatteries.com
r8556.cam
*.r8556.cam
ra-ma.shop
*.ra-ma.shop
readspot-blog.com
*.readspot-blog.com
rokubet289.com
*.rokubet289.com
saeid.it
*.saeid.it
sajilocha.com
*.sajilocha.com
sd41.top
*.sd41.top
shapelift.pro
*.shapelift.pro
siddhartha.io
*.siddhartha.io
sideestateagent.com
*.sideestateagent.com
signboschstudio.com
*.signboschstudio.com
sinistrati.it
*.sinistrati.it
smartadvisorybase.com
*.smartadvisorybase.com
soch.it
*.soch.it
socialcontract.it
*.socialcontract.it
socialmuseum.it
*.socialmuseum.it
solclub.io
*.solclub.io
stampalibrionline.it
*.stampalibrionline.it
stopsystem.it
*.stopsystem.it
*.airteltvindia.streamlat.xyz
*.dorama.streamlat.xyz
*.hentai.streamlat.xyz
*.play.streamlat.xyz
*.prueba.streamlat.xyz
*.series.streamlat.xyz
streamlat.xyz
*.streamlat.xyz
*.ww38.streamlat.xyz
summersport.it
*.summersport.it
svvzrf.gdn
*.svvzrf.gdn
systemonline.it
*.systemonline.it
Other domains in certificate