76/100 SECURITY SCORE

Certificate Information

Subject
CN=grigliatimetallici.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 72 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
98:11:1C:48:9C:E3:EF:BD:89:8B:FC:AE:AF:26:C5:04:3B:9D:E5:5E:0A:6E:BC:F9:E2:16:DE:DA:3B:1E:6B:AB
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
hdhub4u.dev *.hdhub4u.dev

Other domains in certificate

506076.com *.506076.com
99956bw.com *.99956bw.com
birthdate.it *.birthdate.it
da-da3.com *.da-da3.com
deafsingle.it *.deafsingle.it
greatholidaytours.com *.greatholidaytours.com
grecarch.xyz *.grecarch.xyz
grecflz.buzz *.grecflz.buzz
greenbayhoppersfc.com *.greenbayhoppersfc.com
grigliatimetallici.it *.grigliatimetallici.it
grimi.it *.grimi.it
gtjkjksd0930.cc *.gtjkjksd0930.cc
gtobillboard.com *.gtobillboard.com
gudwincasino.com *.gudwincasino.com
gurukulkhurai.com *.gurukulkhurai.com
haber.help *.haber.help
hack2019.com *.hack2019.com
haha303-ao.com *.haha303-ao.com
hair-extensions4u.com *.hair-extensions4u.com
hansib-books.com *.hansib-books.com
heating-system-292350505.click *.heating-system-292350505.click
helpast.buzz *.helpast.buzz
hidate.com *.hidate.com
hiroshima-custom-247830011.click *.hiroshima-custom-247830011.click
hmvcfyte.xyz *.hmvcfyte.xyz
homegame.it *.homegame.it
honor.im *.honor.im
horizonforgeme.lat *.horizonforgeme.lat
horizonlinks.net *.horizonlinks.net
hpmgeqd378.vip *.hpmgeqd378.vip
hs48k.xyz *.hs48k.xyz
hs52i.xyz *.hs52i.xyz
hs52u.xyz *.hs52u.xyz
hs53i.xyz *.hs53i.xyz
hsb32.top *.hsb32.top
hvfhf.bid *.hvfhf.bid
hx4.my *.hx4.my
hyderabadgifts.com *.hyderabadgifts.com
i2h5xwn2wqc7.com *.i2h5xwn2wqc7.com
ibet88biz.pro *.ibet88biz.pro
icedswiss.com *.icedswiss.com
idocentiscapigliati.com *.idocentiscapigliati.com
iendeavormedia.com *.iendeavormedia.com
ilckksposjwdlmobgbpf.com *.ilckksposjwdlmobgbpf.com