Cached · just now
91/100 SECURITY SCORE

Certificate Information

Subject
CN=5mm.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026 49 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EF:75:6B:B9:8C:C1:A4:DB:6C:78:03:34:69:74:97:FF:47:42:97:6E:52:2F:8D:37:90:8C:9C:C9:2A:64:25:A2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(), midi=(), sync-xhr=(); +6 more
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
streamsage.online *.streamsage.online *.demo.streamsage.online *.home.streamsage.online *.m.streamsage.online *.mobile.streamsage.online *.staging.streamsage.online *.web.streamsage.online

Other domains in certificate

*.130.5mm.it *.2.5mm.it *.29.5mm.it *.45.5mm.it 5mm.it *.5mm.it *.analytic.5mm.it *.chart.5mm.it *.diameter0.5mm.it *.leomat.5mm.it *.p62.5mm.it *.reporting.5mm.it *.stats.5mm.it *.tibia17.5mm.it
*.demo.nycwonderconstruction.com nycwonderconstruction.com *.nycwonderconstruction.com
*.cpanel.pics.forsale *.cpcontacts.pics.forsale pics.forsale *.pics.forsale
*.48f73230-f93f-4388-968c-2d6505de1f76.pj911d.cc *.ahfdzwhm.pj911d.cc *.analytics.pj911d.cc *.api.pj911d.cc *.app.pj911d.cc *.backup.pj911d.cc *.careers.pj911d.cc *.dev.pj911d.cc *.emv1.pj911d.cc *.ftp.pj911d.cc *.kubeflow-pipeline.pj911d.cc *.localhost.pj911d.cc *.m.pj911d.cc *.mobile.pj911d.cc *.new.pj911d.cc *.notexistsadmin.pj911d.cc *.notexistsdev.pj911d.cc pj911d.cc *.pj911d.cc *.poc-dashboard.pj911d.cc *.pop.pj911d.cc *.random.pj911d.cc *.shop.pj911d.cc *.staging.pj911d.cc *.store.pj911d.cc *.uat.pj911d.cc *.udpweapp.pj911d.cc *.web.pj911d.cc *.webdisk.pj911d.cc *.webmail.pj911d.cc *.wpnrbpop.pj911d.cc *.www.pj911d.cc *.wwww.pj911d.cc
princetushar.com *.princetushar.com
*.93d77803-f512-4867-a1f0-3f4dbbee8cf4.qt3935.com *.edu.qt3935.com qt3935.com *.qt3935.com *.rhbcirodsj.qt3935.com *.staging.qt3935.com *.stg.qt3935.com *.v1.qt3935.com
*.admin.smartmarketing.it *.dashs.smartmarketing.it smartmarketing.it *.smartmarketing.it *.smtp.smartmarketing.it *.superset.smartmarketing.it *.webmail.smartmarketing.it
*.dev.tikkafusion.ca *.globalsupermarket-ca.tikkafusion.ca *.stagging.tikkafusion.ca *.thecooked-ca.tikkafusion.ca *.thecooked-canew.tikkafusion.ca *.thevibebarrie-ca.tikkafusion.ca tikkafusion.ca *.tikkafusion.ca
*.jusbr.visualizar-arquivo.org visualizar-arquivo.org *.visualizar-arquivo.org