Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=piperpubtorino.it
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 08, 2026
Valid Until
April 08, 2026
85 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:95:25:AD:8C:75:54:06:C3:C7:A6:C1:01:FF:F0:E0:96:17:59:B8:63:A6:E0:8C:FC:F0:A5:71:D4:EC:A2:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
youintheform.com
kds.1345kitchen.com
orders.1345kitchen.com
portal.1345kitchen.com
bithumb.2nuz.com
5seeds-app.com
aamdanikharcha.com
advbrunapalma.com.br
aiflows.ch
www.aiflows.ch
app.artofact.art
www.autovalore.it
calc.beaver-pension.com
invoice.bivis.app
boda-rayvan.com
brucebertrand.com
bytemotion.store
toolbox.civichub.ngo
torrbit.co.in
coachor.app
www.coastalrehabneuro.ca
www.sthasagun.com.np
www.cregd.org
deeptown.com
delvonix.com
exchange.digitalliberia.com
admin.dizceresalud.com
dubdproducts.com
easegis.jp
emprezas.com.br
federaltech.io
findingpurpose.co.nz
flaskandcompass.com
www.fmecofwny.org
alianzas.fraiche.com.mx
frisshirek.hu
genie-app.co.za
glbyte.com
www.hedef.agency
elisa.hermesugolini.it
omar.hermesugolini.it
construction.homestation.jp
icecoolnz.store
hustcvstudent20215482.id.vn
info-io.com
demo.insightsforprojects.com
interify.mx
map.ireshub.org
jctech.run
www.jctech.run
josephthabangpalframan.com
www.kfsinnovations.in
www.koto.team
thailong.laserwork.space
leibelthedev.com
lincolnasbestos.com
docs.lionsoft.ca
lloydsofbromley.co.uk
loveloopapp.com
luisponce.dev
rp.luisponce.dev
mymavin-applink.mavin-group.com
dianterna.my.id
nartexconcept.ro
stage.naturehelp.online
nouebynour.com
media.olilz.xyz
onlyzephys.com
piperpubtorino.it
uat-enlace.polipay.io
pontucontabilidadaldia.com
prestigecollectivegroup.com
www.pribehvobraze.sk
pickleball.radiasi.space
www.resiliencetoolbox.ca
rztech.run
www.rztech.run
sajithlal.com
www.samsungdooras.com
shorelinesi.in
sideris.xyz
www.smallrobot.app
play.sprinticket.com
sridroptaxi.com
www.superlioralogistics.com
synlig.ai
tenebris.site
qa.timebanken.no
trademill.video
www.tricktrail.dk
trimelis.com
trippleq.xyz
undiariodeviaje.com
www.vegtra.com
vugha.com
suppliers.workport.pl
www.yycnetwork.run
yycnetwork.run
bunutan.zebprojects.site
zeenews.site
Other domains in certificate