76/100 SECURITY SCORE

Certificate Information

Subject
CN=mudo.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E4:74:95:E9:DE:4A:79:8C:8B:62:B3:11:19:EB:43:35:B1:69:F4:7E:79:CC:04:95:CC:F8:3F:2D:1A:0C:A3:0C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
myessentialoils.com *.myessentialoils.com *.mpowered.myessentialoils.com *.ww16.myessentialoils.com

Other domains in certificate

2manbet.cc *.2manbet.cc *.452sckyx.2manbet.cc *.7469h6079vp.2manbet.cc *.yforjtesnsujzvt.2manbet.cc *.yplmq63vfvnr.2manbet.cc *.zqucyfcfhu.2manbet.cc
belastungsinkontinenz.com *.belastungsinkontinenz.com *.cursos.belastungsinkontinenz.com
clamchairs.com *.clamchairs.com *.demo.clamchairs.com *.m.clamchairs.com *.wiki.clamchairs.com *.ww1.clamchairs.com *.ww17.clamchairs.com
dastagir.com *.dastagir.com *.sitemap.dastagir.com *.ww41.dastagir.com
*.analytic.mudo.it mudo.it *.mudo.it
pajakbola-pusat.xyz *.pajakbola-pusat.xyz *.sitemaps.pajakbola-pusat.xyz
*.mail.phimset.pro phimset.pro *.phimset.pro
*.restaurant.smorrebrod.com smorrebrod.com *.smorrebrod.com *.vdi.smorrebrod.com
*.cursos.sparmarkt.com *.f615f63b-496c-4e1e-b38d-d6d8efc8560c.sparmarkt.com *.mail.sparmarkt.com *.rds.sparmarkt.com *.sitemap.sparmarkt.com sparmarkt.com *.sparmarkt.com
*.smtp.streamwast.xyz streamwast.xyz *.streamwast.xyz *.the.streamwast.xyz
*.members.thehorselet.com thehorselet.com *.thehorselet.com *.ww25.thehorselet.com
*.101.vipanicdn.net vipanicdn.net *.vipanicdn.net *.www010.vipanicdn.net *.www014.vipanicdn.net *.www024.vipanicdn.net *.www029.vipanicdn.net *.www03.vipanicdn.net *.www034.vipanicdn.net *.www035.vipanicdn.net *.www04.vipanicdn.net *.www040.vipanicdn.net *.www041.vipanicdn.net *.www042.vipanicdn.net *.www044.vipanicdn.net *.www046.vipanicdn.net *.www047.vipanicdn.net *.www054.vipanicdn.net *.www080.vipanicdn.net *.www081.vipanicdn.net *.www082.vipanicdn.net *.www087.vipanicdn.net *.www088.vipanicdn.net *.www100.vipanicdn.net *.www104.vipanicdn.net *.www111.vipanicdn.net *.www113.vipanicdn.net *.www114.vipanicdn.net *.www116.vipanicdn.net *.www117.vipanicdn.net *.www119.vipanicdn.net *.www13.vipanicdn.net *.wwwx01.vipanicdn.net *.wwwx14.vipanicdn.net
*.gateway.werksman.com werksman.com *.werksman.com