Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=elettrodomesticiaosta.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
32:15:92:76:2D:02:C9:D3:A5:29:92:36:A5:10:DC:B8:3C:4A:1B:E0:AD:9F:60:D4:45:48:F7:F8:DB:2C:3F:95
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
visionpla.net
*.visionpla.net
*.cpanel.cubematrix.co
cubematrix.co
*.cubematrix.co
*.mail.cubematrix.co
elettrodomesticiaosta.com
*.elettrodomesticiaosta.com
*.18852694-93a6-4c47-b5f7-0179d72b0c7f.encox.xyz
*.64f41750-c128-4234-9e8d-ae9eb92b44fe.encox.xyz
*.admin.encox.xyz
*.app.encox.xyz
*.assets.encox.xyz
*.backup.encox.xyz
*.comune.encox.xyz
*.demo.encox.xyz
encox.xyz
*.encox.xyz
*.m.encox.xyz
*.mail.encox.xyz
*.rtvqqsitemap.encox.xyz
*.sitemap.encox.xyz
*.sitemaps.encox.xyz
*.tblabafcebfrbncsitemaps.encox.xyz
*.test.encox.xyz
*.uat.encox.xyz
*.ww25.encox.xyz
*.wynkmovies.encox.xyz
ghenoteca.com
*.ghenoteca.com
*.hostmaster.ghenoteca.com
*.portal.ghenoteca.com
*.rdweb.ghenoteca.com
*.remote.ghenoteca.com
*.vpn.ghenoteca.com
*.ffffffffffff.grenade.net
grenade.net
*.grenade.net
*.ftp.labubusol.xyz
labubusol.xyz
*.labubusol.xyz
lasala.com
*.lasala.com
laughbeyond.net
*.laughbeyond.net
lihanchen.com
*.lihanchen.com
*.api.loale.com
*.backup.loale.com
*.beta.loale.com
loale.com
*.loale.com
*.test.loale.com
loisach.com
*.loisach.com
lproofing.com
*.lproofing.com
mananabay.com
*.mananabay.com
osakwe.com
*.osakwe.com
pstreamer.app
*.pstreamer.app
*.www.pstreamer.app
*.app.rankingszone.com
*.marketplace.rankingszone.com
*.payment.rankingszone.com
*.product.rankingszone.com
rankingszone.com
*.rankingszone.com
*.tool.rankingszone.com
shealys.com
*.shealys.com
siriwat.com
*.siriwat.com
*.andrea-nelsen-art.teachable.cm
*.astral-institute.teachable.cm
*.comadrona-en-la-ola.teachable.cm
*.institute-for-hermetic-studies.teachable.cm
*.quespond.teachable.cm
*.teach-coinbasepro.teachable.cm
teachable.cm
*.teachable.cm
*.theastarschool.teachable.cm
twelve10.com
*.twelve10.com
vipani.com
*.vipani.com
womencallforpeace.net
*.womencallforpeace.net
Other domains in certificate