76/100 SECURITY SCORE

Certificate Information

Subject
CN=wiltontool.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 31, 2026
Valid Until
August 29, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:AB:AF:23:DC:84:83:76:0A:2F:62:F7:2B:BA:6F:31:55:D4:15:35:87:C2:71:08:AA:B4:52:62:88:5B:F2:E5
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
zicarelli.com *.zicarelli.com *.api.zicarelli.com *.dev.zicarelli.com *.mail.zicarelli.com *.owa.zicarelli.com *.sitemaps.zicarelli.com *.test.zicarelli.com *.ww11.zicarelli.com *.ww16.zicarelli.com *.ww17.zicarelli.com *.ww25.zicarelli.com *.ww38.zicarelli.com *.ww5.zicarelli.com

Other domains in certificate

anuone.com *.anuone.com *.egomcr.anuone.com
belezapg.bet *.belezapg.bet
cosmeticdermatology.com.au *.cosmeticdermatology.com.au
*.app.dj88bbb.app *.bbs.dj88bbb.app *.cpanel.dj88bbb.app *.de.dj88bbb.app dj88bbb.app *.dj88bbb.app *.email.dj88bbb.app *.log.dj88bbb.app *.magento.dj88bbb.app *.mail1.dj88bbb.app *.news.dj88bbb.app *.stage.dj88bbb.app *.support.dj88bbb.app *.ws.dj88bbb.app
educadigitalcursos.store *.educadigitalcursos.store *.magento.educadigitalcursos.store
exclsive.com *.exclsive.com
galaxyrocks.com *.galaxyrocks.com *.mx.galaxyrocks.com *.www.galaxyrocks.com
gaytravel.com.au *.gaytravel.com.au
hdrezka8bdhtq.org *.hdrezka8bdhtq.org
outfitting.tech *.outfitting.tech *.r6p.outfitting.tech *.swer6p.outfitting.tech
puttonen.com *.puttonen.com
sexhd4k.me *.sexhd4k.me *.ww38.sexhd4k.me *.xem.sexhd4k.me
*.api.slamwrestling.com *.app.slamwrestling.com *.dashboard.slamwrestling.com *.demo.slamwrestling.com *.forecast.slamwrestling.com slamwrestling.com *.slamwrestling.com *.superset.slamwrestling.com
tvujsoused.cz *.tvujsoused.cz
victoriancharm.info *.victoriancharm.info *.ww25.victoriancharm.info
*.content.wiltontool.com *.host170.wiltontool.com *.ns.wiltontool.com *.store.wiltontool.com wiltontool.com *.wiltontool.com *.ww16.wiltontool.com
*.avito.xn--6oq404h.net *.m.xn--6oq404h.net *.sitemap.xn--6oq404h.net xn--6oq404h.net *.xn--6oq404h.net
xn--significadodesoar-txb.com *.xn--significadodesoar-txb.com
*.m.xn--vhqv88c5zs.com *.random.xn--vhqv88c5zs.com xn--vhqv88c5zs.com *.xn--vhqv88c5zs.com