Open
Cached
·
1h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=92896.gd
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
66 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:38:A2:F2:92:A1:B8:E5:46:2F:21:F4:93:90:3C:9D:01:DF:7B:39:68:64:A4:FF:A2:AA:D3:D6:5D:6A:A3:F2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
131.it
*.131.it
*.253.131.it
*.allegationstherein.131.it
*.analytics.131.it
*.analyze.131.it
*.bi.131.it
*.bianchet.131.it
*.bigdata.131.it
*.buccilli.131.it
*.c.131.it
*.conspiracy.131.it
*.data.131.it
*.department.131.it
*.giuliocavenaghi.131.it
*.hystero-neuroses.131.it
*.illustratedinfig.131.it
*.mayrmofermario.131.it
*.mta-sts.131.it
*.nik.131.it
*.paolo.131.it
*.redash.131.it
*.regulations.131.it
*.squadroneavvoltoirokband.131.it
*.studiomeucci.131.it
834x98.cc
*.834x98.cc
92896.gd
*.92896.gd
aiwisemind.pro
*.aiwisemind.pro
*.mail.aiwisemind.pro
*.pay.aiwisemind.pro
bbmd.org
*.bbmd.org
*.hostmaster.bbmd.org
*.m.bbmd.org
bigbargainstore.com
*.bigbargainstore.com
ettoremajoranafoundation.it.com
*.ettoremajoranafoundation.it.com
fundaciojosepfinestres.it.com
*.fundaciojosepfinestres.it.com
jackhammer-us.us
*.jackhammer-us.us
*.ww16.jackhammer-us.us
lwiti.xyz
*.lwiti.xyz
*.16.macbaren.com
*.ardocd.macbaren.com
*.eyeshare.macbaren.com
macbaren.com
*.macbaren.com
*.ww38.macbaren.com
machineslotcasinovopu.it.com
*.machineslotcasinovopu.it.com
*.cc2mm.orbit-gaze.xyz
orbit-gaze.xyz
*.orbit-gaze.xyz
pgdzw.gdn
*.pgdzw.gdn
publicconsultation.com
*.publicconsultation.com
*.ww38.publicconsultation.com
retrotechreborn.com
*.retrotechreborn.com
rockypool.com.au
*.rockypool.com.au
*.invoice.seoblog.com.au
*.reports.seoblog.com.au
seoblog.com.au
*.seoblog.com.au
*.wildcard.seoblog.com.au
*.data.timso.info
*.law.timso.info
*.mortgage.timso.info
*.software.timso.info
timso.info
*.timso.info
*.ww38.timso.info
*.hostmaster.uklandscapeaward.org
*.ildcard.uklandscapeaward.org
uklandscapeaward.org
*.uklandscapeaward.org
*.www.uklandscapeaward.org
wedki.com
*.wedki.com
xwayexa.xyz
*.xwayexa.xyz
Other domains in certificate