Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=forrestersinsurance.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 21, 2026
Valid Until
July 20, 2026
43 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CB:27:00:3E:5F:BF:50:8E:6A:CB:8F:84:D0:2C:5A:A5:E8:DB:A9:12:96:A3:2B:C2:2E:DE:3C:98:23:F4:A1:41
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
domainnames.it
*.domainnames.it
*.admin.domainnames.it
*.analytic.domainnames.it
*.analytics.domainnames.it
*.app.domainnames.it
*.demo.domainnames.it
*.hostmaster.domainnames.it
*.owa.domainnames.it
*.staging.domainnames.it
aydinliky.com
*.aydinliky.com
*.cdn.aydinliky.com
*.sitemap.aydinliky.com
*.ad.fisks.com
*.ar.fisks.com
*.blog.fisks.com
*.cctn.fisks.com
*.cicd.fisks.com
*.english.fisks.com
fisks.com
*.fisks.com
*.gmjw.fisks.com
*.gmqn.fisks.com
*.health.fisks.com
*.lhsr.fisks.com
*.m.fisks.com
*.mail.fisks.com
*.marika.fisks.com
*.mrs.fisks.com
*.pctt.fisks.com
*.projects.fisks.com
*.sitemaps.fisks.com
*.tw.fisks.com
*.ww17.fisks.com
*.www.fisks.com
*.xgzx.fisks.com
*.xinli.fisks.com
*.yjj.fisks.com
*.yjsc.fisks.com
*.analytic.forrestersinsurance.com
*.app.forrestersinsurance.com
*.backup.forrestersinsurance.com
*.beta.forrestersinsurance.com
*.blog.forrestersinsurance.com
*.demo.forrestersinsurance.com
forrestersinsurance.com
*.forrestersinsurance.com
*.forums.forrestersinsurance.com
*.help.forrestersinsurance.com
*.hostmaster.forrestersinsurance.com
*.insight.forrestersinsurance.com
*.m.forrestersinsurance.com
*.mail.forrestersinsurance.com
*.ndrwebackup.forrestersinsurance.com
*.remote.forrestersinsurance.com
*.shop.forrestersinsurance.com
*.stats.forrestersinsurance.com
*.store.forrestersinsurance.com
*.temp.forrestersinsurance.com
*.test.forrestersinsurance.com
*.webmail.forrestersinsurance.com
*.wiki.forrestersinsurance.com
*.backup.guanxiwang.com
*.beta.guanxiwang.com
*.blog.guanxiwang.com
*.crm.guanxiwang.com
*.demo.guanxiwang.com
*.forum.guanxiwang.com
guanxiwang.com
*.guanxiwang.com
*.help.guanxiwang.com
*.hostmaster.guanxiwang.com
*.m.guanxiwang.com
*.remote.guanxiwang.com
*.sitemaps.guanxiwang.com
*.vpn.guanxiwang.com
*.ww1.guanxiwang.com
*.ww11.guanxiwang.com
*.ww16.guanxiwang.com
*.ww25.guanxiwang.com
*.ww38.guanxiwang.com
*.ww5.guanxiwang.com
pandoracat.com
*.pandoracat.com
*.xbousdemo.pandoracat.com
*.pw.wfxrl2.xyz
wfxrl2.xyz
*.wfxrl2.xyz
*.ww38.wfxrl2.xyz
Other domains in certificate