Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=management.finance
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026 70 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
69:DE:94:A0:E1:D3:5F:26:FB:B3:70:3B:1F:C6:99:3F:F4:AC:CB:02:A3:A4:47:9D:B1:89:E2:61:32:F4:CB:D6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
s59k.com *.s59k.com *.cn.s59k.com *.co.s59k.com *.com.s59k.com *.org.s59k.com *.porn.s59k.com *.pp.s59k.com *.pw.s59k.com *.tv.s59k.com *.us.s59k.com *.vip.s59k.com *.ws.s59k.com

Other domains in certificate

*.api.camisano.it *.app.camisano.it camisano.it *.camisano.it *.comune.camisano.it *.itcmr.camisano.it *.notexistsapi.camisano.it *.referti.camisano.it *.referticmr.camisano.it *.staging.camisano.it
*.5qutp.gamingheadsets.xyz *.b54zj.gamingheadsets.xyz *.cpcontacts.gamingheadsets.xyz gamingheadsets.xyz *.gamingheadsets.xyz *.l2aa8.gamingheadsets.xyz *.l8kqx.gamingheadsets.xyz *.nan1j.gamingheadsets.xyz *.orrwv.gamingheadsets.xyz *.q86h5.gamingheadsets.xyz *.rnyzj.gamingheadsets.xyz *.whm.gamingheadsets.xyz *.xbh6h.gamingheadsets.xyz *.yoszf1yme1.gamingheadsets.xyz *.z44ag.gamingheadsets.xyz
*.dev.guiapremierhoteles.com guiapremierhoteles.com *.guiapremierhoteles.com
management.finance *.management.finance *.random.management.finance
*.4fab860b-1fea-4c44-a472-9f5a053023ae.mendobreathog.com *.a.mendobreathog.com *.aa1c99ab-740e-4fde-bd1b-9b2503728518.mendobreathog.com *.adhhqlearn.mendobreathog.com *.admin.mendobreathog.com *.api.mendobreathog.com *.app.mendobreathog.com *.assets.mendobreathog.com *.b95d21f7-a2c7-4fee-882f-b36854669779.mendobreathog.com *.backup.mendobreathog.com *.blog.mendobreathog.com *.cloud.mendobreathog.com *.dashboard.mendobreathog.com *.demo.mendobreathog.com *.dev.mendobreathog.com *.git.mendobreathog.com *.learn.mendobreathog.com *.load.mendobreathog.com *.mail.mendobreathog.com *.mailer.mendobreathog.com *.marketing.mendobreathog.com *.members.mendobreathog.com mendobreathog.com *.mendobreathog.com *.prod.mendobreathog.com *.qa.mendobreathog.com *.rd.mendobreathog.com *.rds.mendobreathog.com *.rdweb.mendobreathog.com *.remote.mendobreathog.com *.secure.mendobreathog.com *.staging.mendobreathog.com *.stg.mendobreathog.com *.test.mendobreathog.com *.uat.mendobreathog.com *.uzohitgr.mendobreathog.com *.v1.mendobreathog.com *.v2.mendobreathog.com *.vpn.mendobreathog.com *.web.mendobreathog.com *.www.mendobreathog.com
perthhealthinsurance.au *.perthhealthinsurance.au
*.portal.tempguard.io tempguard.io *.tempguard.io