Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=stickman.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026 71 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:8C:CF:DC:BC:2A:62:D3:75:C6:50:45:C0:A3:DC:D5:30:23:09:4A:45:46:CA:D3:A7:C8:65:6D:09:84:B8:71
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
testboard.it *.testboard.it

Other domains in certificate

stickman.it *.stickman.it
stickmanrebirth.com *.stickmanrebirth.com
stickybit.it *.stickybit.it
stickyred7s.com *.stickyred7s.com
stillbelieve.org *.stillbelieve.org
stimolantesessuale.it *.stimolantesessuale.it
strand-single-768040171.click *.strand-single-768040171.click
strongdog.org *.strongdog.org
supportivesolutions.com *.supportivesolutions.com
supreme-case.live *.supreme-case.live
surveillance-camera-systems-for-business-2.cfd *.surveillance-camera-systems-for-business-2.cfd
surveillancecrowd.com *.surveillancecrowd.com
sutherlandglobalsupport.com *.sutherlandglobalsupport.com
swaproot.com *.swaproot.com
swerte77vip1.com *.swerte77vip1.com
swerte77vip6.com *.swerte77vip6.com
sxst.xyz *.sxst.xyz
syd38.top *.syd38.top
t81287.com *.t81287.com
taglibsharp.com *.taglibsharp.com
tampaonlinenews.com *.tampaonlinenews.com
tax-acornandoak.com *.tax-acornandoak.com
tax-fraud.com *.tax-fraud.com
tc5su5j.cyou *.tc5su5j.cyou
tde.club *.tde.club
teammillennium.org *.teammillennium.org
teamredditadvertisingservice.com *.teamredditadvertisingservice.com
texasgymcompany.com *.texasgymcompany.com
th75chmb.top *.th75chmb.top
thamrinsinarsurya.com *.thamrinsinarsurya.com
thecardinalcrew.com *.thecardinalcrew.com
thecricbet99.org *.thecricbet99.org
theflowermountain.com *.theflowermountain.com
thegardeningspectrum.xyz *.thegardeningspectrum.xyz
theicelords.com *.theicelords.com
themetrograph.com *.themetrograph.com
thinkfinscalepartners.com *.thinkfinscalepartners.com
thyrotomy.com *.thyrotomy.com
tianbo99.com *.tianbo99.com
tilehurst.net *.tilehurst.net
tnqoy.bid *.tnqoy.bid
toplinksitez.info *.toplinksitez.info
tqwdw66775saewq04ewqdwr.vip *.tqwdw66775saewq04ewqdwr.vip
trademasterguide.cyou *.trademasterguide.cyou