Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=voyeurweb.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026 58 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E9:A9:3C:DA:57:18:17:FF:15:5F:A6:50:16:86:9E:DF:A5:CB:AB:BF:FB:30:58:03:41:50:34:35:28:28:CC:FE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
suman.it *.suman.it *.api.suman.it *.demo.suman.it

Other domains in certificate

*.5qutp.affdev.xyz *.95lw2.affdev.xyz affdev.xyz *.affdev.xyz *.kac0t.affdev.xyz *.l1v3f.affdev.xyz *.staging.affdev.xyz *.uw9i.affdev.xyz *.z3dl1.affdev.xyz
*.839any.builddock.info *.api.builddock.info builddock.info *.builddock.info *.qa.builddock.info *.staging.builddock.info *.v1.builddock.info *.v2.builddock.info
*.accounts.chemtrails.it *.admin.chemtrails.it *.api.chemtrails.it *.app.chemtrails.it chemtrails.it *.chemtrails.it *.dev.chemtrails.it *.forecast.chemtrails.it *.hostmaster.chemtrails.it *.metric.chemtrails.it *.report.chemtrails.it *.reporting.chemtrails.it *.research.chemtrails.it *.spring.chemtrails.it *.sso.chemtrails.it *.staging.chemtrails.it *.superset.chemtrails.it *.www.chemtrails.it
*.app.installer.life *.backend.installer.life installer.life *.installer.life *.www.installer.life
*.848e9747-d9b9-47cc-bd0a-b7bfbc9f7e2f.primevaluetravels.xyz *.dashboard.primevaluetravels.xyz primevaluetravels.xyz *.primevaluetravels.xyz
*.admin.sebas.it *.analytic.sebas.it *.app.sebas.it *.dashboard.sebas.it *.data.sebas.it *.hostmaster.sebas.it *.intel.sebas.it *.redash.sebas.it sebas.it *.sebas.it *.superset.sebas.it
*.mobile.steves-digicam.com *.public.steves-digicam.com steves-digicam.com *.steves-digicam.com *.ww25.steves-digicam.com
*.hostmaster.topgolfclubs.com topgolfclubs.com *.topgolfclubs.com
*.dev.travelinescotland.co.uk *.old.travelinescotland.co.uk *.shop.travelinescotland.co.uk *.test.travelinescotland.co.uk travelinescotland.co.uk *.travelinescotland.co.uk
*.analytic.voyeurweb.it *.blog.voyeurweb.it *.hostmaster.voyeurweb.it *.intelligence.voyeurweb.it *.mail.voyeurweb.it *.reporting.voyeurweb.it *.rkyehnnvqrhostmaster.voyeurweb.it *.smtp.voyeurweb.it *.superset.voyeurweb.it *.supersets.voyeurweb.it voyeurweb.it *.voyeurweb.it *.webmail.voyeurweb.it
*.git.workliveandplay.com workliveandplay.com *.workliveandplay.com