76/100 SECURITY SCORE

Certificate Information

Subject
CN=wgt.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 26, 2026
Valid Until
May 27, 2026 30 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
88:24:04:32:FA:E2:2E:0F:BE:B0:1F:E0:5C:14:68:A0:88:38:2C:5F:0A:BB:4B:27:E6:13:C2:19:80:D6:69:56
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
xiangpeng.com *.xiangpeng.com *.assets.xiangpeng.com *.blog.xiangpeng.com *.careers.xiangpeng.com *.clientesvpn.xiangpeng.com *.dns2.xiangpeng.com *.docs.xiangpeng.com *.ebay.xiangpeng.com *.flight.xiangpeng.com *.forum.xiangpeng.com *.gate.xiangpeng.com *.hostmaster.xiangpeng.com *.imap.xiangpeng.com *.incoming.xiangpeng.com *.khimmy.xiangpeng.com *.mail.xiangpeng.com *.mail2.xiangpeng.com *.mobileconnect.xiangpeng.com *.mx2.xiangpeng.com *.news.xiangpeng.com *.officevpn.xiangpeng.com *.qxpvzremoteapp.xiangpeng.com *.rdp.xiangpeng.com *.rds.xiangpeng.com *.rds1.xiangpeng.com *.remoteapps1.xiangpeng.com *.remoto.xiangpeng.com *.search.xiangpeng.com *.secure.xiangpeng.com *.service.xiangpeng.com *.sitemaps.xiangpeng.com *.spam.xiangpeng.com *.srvpn.xiangpeng.com *.ssl.xiangpeng.com *.start.xiangpeng.com *.store.xiangpeng.com *.vpn2.xiangpeng.com *.webmail.xiangpeng.com *.ww1.xiangpeng.com *.ww16.xiangpeng.com *.ww17.xiangpeng.com *.ww25.xiangpeng.com *.ww38.xiangpeng.com *.ww5.xiangpeng.com *.www.xiangpeng.com *.zhao.xiangpeng.com

Other domains in certificate

agac.com.au *.agac.com.au *.commons.agac.com.au *.www.agac.com.au
best-cryptocurrency-investing.online *.best-cryptocurrency-investing.online *.prod01.best-cryptocurrency-investing.online
fiercemax.com *.fiercemax.com *.remote.fiercemax.com
*.backend.fowler.it fowler.it *.fowler.it *.superset.fowler.it
*.app.lumifiexchangewiu.cc lumifiexchangewiu.cc *.lumifiexchangewiu.cc
*.antispam.mre.com.pl *.auth.mre.com.pl *.correo.mre.com.pl *.demo.mre.com.pl *.dev.mre.com.pl *.mail.mre.com.pl *.mailgate.mre.com.pl mre.com.pl *.mre.com.pl *.mx.mre.com.pl *.remote.mre.com.pl *.shop.mre.com.pl *.store.mre.com.pl *.test.mre.com.pl
saharafragile.org *.saharafragile.org *.sitemaps.saharafragile.org *.webdisk.saharafragile.org *.www.saharafragile.org
*.fr.terrafr.com *.perm.terrafr.com terrafr.com *.terrafr.com
*.app.wgt.it wgt.it *.wgt.it