76/100 SECURITY SCORE

Certificate Information

Subject
CN=camerareviews.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026 67 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:A9:2B:D2:80:40:AC:2D:60:09:A1:8C:EF:41:71:7A:15:0C:29:1B:B3:41:D5:44:B1:F9:BA:10:02:C5:1E:08
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
windstream-login.com *.windstream-login.com

Other domains in certificate

camerareviews.it *.camerareviews.it
carsmarket.it *.carsmarket.it
cashone.it *.cashone.it
iloveweddingplanner.it *.iloveweddingplanner.it *.mail.iloveweddingplanner.it
mant.it *.mant.it
masterone.it *.masterone.it
mcm26.top *.mcm26.top
pavlov.io *.pavlov.io *.remote.pavlov.io
sappare.com *.sappare.com
scarpeammortizzate.it *.scarpeammortizzate.it
serviceshome.it *.serviceshome.it
sgc7qo8.cyou *.sgc7qo8.cyou
shading.com.au *.shading.com.au
shagree.it *.shagree.it
shanghaihotels.it *.shanghaihotels.it
shopkap.com *.shopkap.com
sordomute.it *.sordomute.it
spoiledrotten2.com *.spoiledrotten2.com
sportsciences.it *.sportsciences.it
sportsmagazine.it *.sportsmagazine.it
storyboard.chat *.storyboard.chat
tane.it *.tane.it
*.lkzdx.thai99pro.top thai99pro.top *.thai99pro.top
thecoffeetavern.com *.thecoffeetavern.com
thevnrom.org *.thevnrom.org
travagliente.it *.travagliente.it
trik123.org *.trik123.org
useaperiansite.com *.useaperiansite.com
vacations-travel-nl-mb13.click *.vacations-travel-nl-mb13.click
vinmail.org *.vinmail.org
w13721605.com *.w13721605.com
w13721817.com *.w13721817.com
w2008w.sbs *.w2008w.sbs
webconcerts.com *.webconcerts.com
wellempirehk.com *.wellempirehk.com
wetab.it *.wetab.it
wio290kodfs9023k90dfkoxvgd-dgd.top *.wio290kodfs9023k90dfkoxvgd-dgd.top
worldpostnews.com *.worldpostnews.com
xn--fmr94pgqc.com *.xn--fmr94pgqc.com
xpjac.net *.xpjac.net
zdvmo.bid *.zdvmo.bid
zmfutureinvestorsclub.com *.zmfutureinvestorsclub.com