Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=acquariocivicomilano.eu
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
November 27, 2025
Valid Until
February 25, 2026 52 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
23:7F:E1:51:C3:5B:38:FB:E7:95:08:F8:E4:F2:8C:2A:25:27:9E:A9:51:BF:88:49:FA:B8:55:05:6A:79:4F:43
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
thrbotax.com *.thrbotax.com *.67fefcec-9807-4620-b9ad-50307f2c539f.thrbotax.com *.770e1508-2309-4ad6-a573-8ea7d5ca837b.thrbotax.com *.a.thrbotax.com *.m.thrbotax.com *.mail.thrbotax.com *.members.thrbotax.com *.mx1.thrbotax.com *.vpn.thrbotax.com *.ww16.thrbotax.com *.ww25.thrbotax.com

Other domains in certificate

acquariocivicomilano.eu *.acquariocivicomilano.eu *.cloud.acquariocivicomilano.eu *.top10pts.acquariocivicomilano.eu
capiagency.com *.capiagency.com *.chat.capiagency.com *.insure.capiagency.com
copyplus.us *.copyplus.us
datachain.us *.datachain.us
fithealth.us *.fithealth.us
getdreams.us *.getdreams.us
goodeye.us *.goodeye.us
goodit.us *.goodit.us
goot.us *.goot.us
hypercore.us *.hypercore.us
lcze66.com *.lcze66.com *.wuma.lcze66.com
mediclinicdarwin.com.au *.mediclinicdarwin.com.au *.ww17.mediclinicdarwin.com.au *.ww25.mediclinicdarwin.com.au *.ww38.mediclinicdarwin.com.au
newcloud.us *.newcloud.us
nextia.us *.nextia.us
*.atge.ohdautu.com *.cgo.ohdautu.com *.fzndy.ohdautu.com ohdautu.com *.ohdautu.com *.qqfgx.ohdautu.com *.unumm.ohdautu.com *.vugp.ohdautu.com *.xbb.ohdautu.com *.xflsi.ohdautu.com *.zmnhy.ohdautu.com
*.1ayfcwj1x.opznvlaams.be *.fq3.opznvlaams.be opznvlaams.be *.opznvlaams.be
ouropreto.xyz *.ouropreto.xyz *.ww25.ouropreto.xyz
pixelpower.space *.pixelpower.space *.shawn-clement-golf-basics.pixelpower.space *.where-does-corporals-corner-live.pixelpower.space
prestamosecuador.com *.prestamosecuador.com
rewards-mantlexyz.app *.rewards-mantlexyz.app
sgmc21.net *.sgmc21.net
smartnode.us *.smartnode.us
streamest.io *.streamest.io
*.dc96c2b3-efdc-4cd2-ac2e-245957fd3aea.xn--pizzaht-31a.com *.fe61d43c-9f1b-4fd5-9bda-48964eceb569.xn--pizzaht-31a.com *.rd.xn--pizzaht-31a.com *.rdweb.xn--pizzaht-31a.com xn--pizzaht-31a.com *.xn--pizzaht-31a.com
*.mx7.yourtxasbenefits.com *.w.yourtxasbenefits.com yourtxasbenefits.com *.yourtxasbenefits.com