Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=4jj.it
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 05, 2026
Valid Until
September 03, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DE:13:BE:56:C2:40:3C:89:D2:D5:86:A9:75:48:11:D4:05:7A:E6:F8:92:4F:05:39:44:59:27:B9:CA:7C:FF:C8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
twisters.it *.twisters.it

Other domains in certificate

4jj.it *.4jj.it
betflik88s.xyz *.betflik88s.xyz *.l7nqb.betflik88s.xyz
casualties.it *.casualties.it
*.amzn.chinchilla.pro *.catalog.chinchilla.pro chinchilla.pro *.chinchilla.pro *.fwd.chinchilla.pro
defghij.top *.defghij.top *.fdb74.defghij.top *.kwid9.defghij.top *.qpuov.defghij.top
dolosi.it *.dolosi.it
flipkarr.com *.flipkarr.com *.nemo.flipkarr.com *.nm.flipkarr.com *.partner.flipkarr.com
*.access.fyude.com *.apps.fyude.com *.cloud.fyude.com fyude.com *.fyude.com *.gateway.fyude.com *.jdj.fyude.com *.m.fyude.com *.mail.fyude.com *.portal.fyude.com *.rdp.fyude.com *.rds.fyude.com *.rds1.fyude.com *.rk.fyude.com *.ts.fyude.com *.tsmhnt.fyude.com
gepper.com *.gepper.com *.test.gepper.com
interpreteonline.com *.interpreteonline.com
mariaassunta.it *.mariaassunta.it
*.api.nyeef.com *.client.nyeef.com *.cloud.nyeef.com *.connectvpn.nyeef.com *.dc.nyeef.com *.gateway.nyeef.com *.login.nyeef.com *.mail.nyeef.com *.mobile.nyeef.com nyeef.com *.nyeef.com *.office.nyeef.com *.portal.nyeef.com *.rd.nyeef.com *.rdweb.nyeef.com *.remote.nyeef.com *.remoteaccess.nyeef.com *.secureaccess.nyeef.com *.ssl.nyeef.com *.vpn.nyeef.com *.vpn2.nyeef.com *.web.nyeef.com *.webvpn.nyeef.com
qualelavoro.it *.qualelavoro.it
*.drivezone.reward-core.com *.offer.reward-core.com reward-core.com *.reward-core.com
stehovaninymburk.cz *.stehovaninymburk.cz
techandmore.it *.techandmore.it
thegalleria.it *.thegalleria.it
unelgyemom.com *.unelgyemom.com
yaburi.me *.yaburi.me
yougive.it *.yougive.it