Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=magz.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A9:E8:2E:61:A3:B2:1C:B9:59:66:EE:46:58:BA:E3:01:35:CA:1A:30:B9:38:E8:2F:48:04:68:7A:52:6C:BA:F8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
014942.co *.014942.co

Other domains in certificate

014947.co *.014947.co
01858.co *.01858.co
218552.xyz *.218552.xyz
65931.my *.65931.my
africachamberofironandsteel.org *.africachamberofironandsteel.org
aliensaints.com *.aliensaints.com
americanclassiccars.it *.americanclassiccars.it *.demo.americanclassiccars.it *.www.americanclassiccars.it
directproducts.com *.directproducts.com *.mail.directproducts.com *.owa.directproducts.com *.ww42.directproducts.com
fitnessoriginpro.club *.fitnessoriginpro.club
fitnessproelite.club *.fitnessproelite.club
fitnessproexcel.club *.fitnessproexcel.club
fitnessprofusion.club *.fitnessprofusion.club
fitnesspronavigator.club *.fitnesspronavigator.club
fitnesspros.club *.fitnesspros.club
fitnesstrade.club *.fitnesstrade.club
fleeting.xyz *.fleeting.xyz
hazlope.com *.hazlope.com
hscwang7y3m.skin *.hscwang7y3m.skin
ktxtorrent148.com *.ktxtorrent148.com
linkingaiq.com *.linkingaiq.com
livewellapartments.co.uk *.livewellapartments.co.uk
mafiaaclothingco.com *.mafiaaclothingco.com
*.analytic.magz.it *.analytics.magz.it *.analyze.magz.it *.api.magz.it *.backend.magz.it *.forecast.magz.it *.intel.magz.it magz.it *.magz.it *.msexch2k13.magz.it *.mywebmail.magz.it *.remote.magz.it *.vpn.magz.it
mallorcaairport.co *.mallorcaairport.co
marykeys.com *.marykeys.com
mawar77.blog *.mawar77.blog
mj-edu.cn *.mj-edu.cn
psylisten.info *.psylisten.info
*.com.txtv143.vip txtv143.vip *.txtv143.vip
*.mail.william-angel.com william-angel.com *.william-angel.com
*.app.yaah.it *.imap.yaah.it *.redash.yaah.it *.staging.yaah.it *.stats.yaah.it *.webmail.yaah.it yaah.it *.yaah.it