Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=4jj.it
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 05, 2026
Valid Until
September 03, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DE:13:BE:56:C2:40:3C:89:D2:D5:86:A9:75:48:11:D4:05:7A:E6:F8:92:4F:05:39:44:59:27:B9:CA:7C:FF:C8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
twisters.it
*.twisters.it
4jj.it
*.4jj.it
betflik88s.xyz
*.betflik88s.xyz
*.l7nqb.betflik88s.xyz
casualties.it
*.casualties.it
*.amzn.chinchilla.pro
*.catalog.chinchilla.pro
chinchilla.pro
*.chinchilla.pro
*.fwd.chinchilla.pro
defghij.top
*.defghij.top
*.fdb74.defghij.top
*.kwid9.defghij.top
*.qpuov.defghij.top
dolosi.it
*.dolosi.it
flipkarr.com
*.flipkarr.com
*.nemo.flipkarr.com
*.nm.flipkarr.com
*.partner.flipkarr.com
*.access.fyude.com
*.apps.fyude.com
*.cloud.fyude.com
fyude.com
*.fyude.com
*.gateway.fyude.com
*.jdj.fyude.com
*.m.fyude.com
*.mail.fyude.com
*.portal.fyude.com
*.rdp.fyude.com
*.rds.fyude.com
*.rds1.fyude.com
*.rk.fyude.com
*.ts.fyude.com
*.tsmhnt.fyude.com
gepper.com
*.gepper.com
*.test.gepper.com
interpreteonline.com
*.interpreteonline.com
mariaassunta.it
*.mariaassunta.it
*.api.nyeef.com
*.client.nyeef.com
*.cloud.nyeef.com
*.connectvpn.nyeef.com
*.dc.nyeef.com
*.gateway.nyeef.com
*.login.nyeef.com
*.mail.nyeef.com
*.mobile.nyeef.com
nyeef.com
*.nyeef.com
*.office.nyeef.com
*.portal.nyeef.com
*.rd.nyeef.com
*.rdweb.nyeef.com
*.remote.nyeef.com
*.remoteaccess.nyeef.com
*.secureaccess.nyeef.com
*.ssl.nyeef.com
*.vpn.nyeef.com
*.vpn2.nyeef.com
*.web.nyeef.com
*.webvpn.nyeef.com
qualelavoro.it
*.qualelavoro.it
*.drivezone.reward-core.com
*.offer.reward-core.com
reward-core.com
*.reward-core.com
stehovaninymburk.cz
*.stehovaninymburk.cz
techandmore.it
*.techandmore.it
thegalleria.it
*.thegalleria.it
unelgyemom.com
*.unelgyemom.com
yaburi.me
*.yaburi.me
yougive.it
*.yougive.it
Other domains in certificate