Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fourthwall.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 24, 2026
Valid Until
May 25, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D0:29:3E:FF:14:78:45:E6:1A:B9:BD:F1:94:6B:E8:6F:A5:43:78:E5:46:8A:63:51:A6:1F:74:B3:2B:FD:48:81
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
aiplus.click
*.aiplus.click
*.autoconfig.aiplus.click
*.chat.aiplus.click
*.good.aiplus.click
*.mj.aiplus.click
*.open.aiplus.click
calendarlabs.co
*.calendarlabs.co
*.hostmaster.calendarlabs.co
*.ww25.calendarlabs.co
*.ww38.calendarlabs.co
fashionjeans.it
*.fashionjeans.it
*.random.fashionjeans.it
*.autodiscover.followhealthy.com
followhealthy.com
*.followhealthy.com
*.webmail.followhealthy.com
fourthwall.it
*.fourthwall.it
*.mx.fourthwall.it
getingopc.com
*.getingopc.com
*.ww12.getingopc.com
helixsolutions.biz
*.helixsolutions.biz
*.261508e3-bf63-489f-bd9a-dc7023d02108.legitopedia.net
*.admin.legitopedia.net
*.api.legitopedia.net
*.app.legitopedia.net
*.assets.legitopedia.net
*.bfd3b6c0-2257-4c86-801f-58aa41e53e7a.legitopedia.net
*.blog.legitopedia.net
*.connect.legitopedia.net
*.dev.legitopedia.net
*.erp.legitopedia.net
*.fqglnnaxmoconnect.legitopedia.net
legitopedia.net
*.legitopedia.net
*.members.legitopedia.net
*.office.legitopedia.net
*.test.legitopedia.net
*.testing.legitopedia.net
*.vpn.legitopedia.net
*.webmail.legitopedia.net
*.www.legitopedia.net
leslie.it
*.leslie.it
*.www.leslie.it
luckychancescasino.com
*.luckychancescasino.com
*.wildcard.luckychancescasino.com
sourcebloodless.com
*.sourcebloodless.com
*.ww17.sourcebloodless.com
webuyjunkcarswi.com
*.webuyjunkcarswi.com
*.ww25.webuyjunkcarswi.com
*.15120.xzshoufa.com
*.168.xzshoufa.com
*.21207.xzshoufa.com
*.36q1v.xzshoufa.com
*.3g89h.xzshoufa.com
*.4065j.xzshoufa.com
*.52028.xzshoufa.com
*.669.xzshoufa.com
*.715.xzshoufa.com
*.782.xzshoufa.com
*.alpazgidaw.xzshoufa.com
*.comw.xzshoufa.com
*.comwww.xzshoufa.com
*.fkrvb.xzshoufa.com
*.fnn1v.xzshoufa.com
*.h.xzshoufa.com
*.ic7u8.xzshoufa.com
*.insight.xzshoufa.com
*.je4u9.xzshoufa.com
*.mrn30.xzshoufa.com
*.pigg-life.xzshoufa.com
*.prod.xzshoufa.com
*.r9u8r.xzshoufa.com
*.rqaii.xzshoufa.com
*.s168p.xzshoufa.com
*.w.xzshoufa.com
*.ww38.xzshoufa.com
xzshoufa.com
*.xzshoufa.com
*.ypdz7.xzshoufa.com
*.z08xo.xzshoufa.com
Other domains in certificate