Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=resale.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 12, 2026
Valid Until
May 13, 2026 76 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:B5:4C:32:6C:36:99:B5:12:3D:3E:18:86:3D:96:36:36:7E:2B:98:AE:F7:A6:CF:33:9F:38:F0:A6:0F:53:2C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
slimstar.com *.slimstar.com *.wildcard.slimstar.com

Other domains in certificate

1667-gg123.cfd *.1667-gg123.cfd *.92262.1667-gg123.cfd
1902.cam *.1902.cam *.3.1902.cam *.3ce3dac4-e1e9-4f03-aee5-eff83f405bd9.1902.cam *.49505d572e94.1902.cam *.678005b3-b763-4a8d-ad0a-550930f091b9.1902.cam *.924fbc7a-740e-4d16-992d-5ee1bb823dd8.1902.cam *.access.1902.cam *.admin.1902.cam *.api.1902.cam *.app.1902.cam *.assets.1902.cam *.baitushumaccess.1902.cam *.catalogue.1902.cam *.cloud.1902.cam *.controller.1902.cam *.docs.1902.cam *.events.1902.cam *.ftp.1902.cam *.ftpd.1902.cam *.help.1902.cam *.hostmaster.1902.cam *.im.1902.cam *.jet.1902.cam *.jira.1902.cam *.kompanion.1902.cam *.lalafo.1902.cam *.megamarket.1902.cam *.mts.1902.cam *.mx04.1902.cam *.my.1902.cam *.owa.1902.cam *.owncloud.1902.cam *.ozbmepis.1902.cam *.ozon.1902.cam *.partners.1902.cam *.pochta.1902.cam *.pop3.1902.cam *.president-am.1902.cam *.public.1902.cam *.redmine.1902.cam *.riamoneytransfer.1902.cam *.rqcvkassets.1902.cam *.secure.1902.cam *.surhandak.1902.cam *.test.1902.cam *.unistream.1902.cam *.vjkfeevents.1902.cam *.web.1902.cam *.web0.1902.cam *.webmaster.1902.cam *.webmin.1902.cam *.westernunion.1902.cam *.westernunions-az.1902.cam *.westernunions-uz.1902.cam *.ww0.1902.cam *.ww03.1902.cam *.www03.1902.cam *.xixltwesternunions-uz.1902.cam *.yldam.1902.cam
fantasycricket-hub.com *.fantasycricket-hub.com *.sitemap.fantasycricket-hub.com
goal.sx *.goal.sx *.sitemaps.goal.sx
*.adfs.mazdaofmesquite.com *.mail.mazdaofmesquite.com mazdaofmesquite.com *.mazdaofmesquite.com *.newsletter.mazdaofmesquite.com *.sso.mazdaofmesquite.com *.webmail.mazdaofmesquite.com *.wildcard.mazdaofmesquite.com
*.for.resale.it resale.it *.resale.it
sloshi.com *.sloshi.com
*.random.thousandblu.com thousandblu.com *.thousandblu.com *.wildcard.thousandblu.com