Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=boosting.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 26, 2026
Valid Until
June 24, 2026
30 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
97:D7:18:5B:EB:FE:4A:28:16:FB:C9:9C:E3:26:94:13:00:AC:7C:32:F9:EE:C4:39:E9:FC:08:83:A1:39:73:5A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
boosting.it
*.boosting.it
*.admin.boosting.it
*.app.boosting.it
*.dev.boosting.it
*.hostmaster.boosting.it
70596.blog
*.70596.blog
76539.club
*.76539.club
80111.loan
*.80111.loan
85756.bike
*.85756.bike
airarms.org
*.airarms.org
*.wap.airarms.org
axionmentor.com
*.axionmentor.com
cinfzu.church
*.cinfzu.church
clhw406.cyou
*.clhw406.cyou
ctzuj.town
*.ctzuj.town
d2f7pu6y.top
*.d2f7pu6y.top
deinfoportalkz.live
*.deinfoportalkz.live
find-work-ind21.sbs
*.find-work-ind21.sbs
fjcnz.pro
*.fjcnz.pro
forgedinthealps.com
*.forgedinthealps.com
form138954.cfd
*.form138954.cfd
h8qo6ah.cc
*.h8qo6ah.cc
hlcitdfrt.com
*.hlcitdfrt.com
honsberger.com
*.honsberger.com
*.images.honsberger.com
*.m.honsberger.com
*.mail.honsberger.com
*.ms.honsberger.com
*.sitemap.honsberger.com
*.vpn.honsberger.com
*.wildcard.honsberger.com
*.ww16.honsberger.com
*.ww17.honsberger.com
*.ww38.honsberger.com
houses-for-sale-ar.sbs
*.houses-for-sale-ar.sbs
insuranceservice.com.au
*.insuranceservice.com.au
kaloved.pro
*.kaloved.pro
kathysclimatekits.com
*.kathysclimatekits.com
*.ka.kriket.live
kriket.live
*.kriket.live
*.npl.kriket.live
*.admin.realmail.icu
*.api.realmail.icu
*.app.realmail.icu
*.assets.realmail.icu
*.backup.realmail.icu
*.c09a5415-eba9-4a6f-9a88-1a1fc24d749a.realmail.icu
*.dev.realmail.icu
*.ettaedzfjzwmeruhostmaster.realmail.icu
*.hostmaster.realmail.icu
realmail.icu
*.realmail.icu
*.server.realmail.icu
*.staging.realmail.icu
*.uat.realmail.icu
*.vps.realmail.icu
*.crm.therealreal.co
*.e.therealreal.co
*.help.therealreal.co
*.ihwtoctzz3uqe97d.therealreal.co
*.staging.therealreal.co
therealreal.co
*.therealreal.co
*.ebay.wwwimqq.com
wwwimqq.com
*.wwwimqq.com
Other domains in certificate