Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ituber.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 23, 2026
Valid Until
May 24, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
73:E5:22:2A:65:29:3E:63:E7:94:1F:B3:1E:79:38:73:A2:1B:41:82:D4:91:FB:32:51:B5:FD:19:FD:56:44:D1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
fuhadwork.com
*.fuhadwork.com
68814.net
*.68814.net
*.api.68814.net
*.assets.68814.net
*.blog.68814.net
*.demo.68814.net
*.dev.68814.net
*.ea693faf-b84f-4493-838e-1d4197fe8b71.68814.net
*.h5.68814.net
*.hostmaster.68814.net
*.old.68814.net
*.sbzzuapi.68814.net
*.test.68814.net
*.vpn.68814.net
agenceazur.com
*.agenceazur.com
*.ww38.agenceazur.com
bodycarepla.net
*.bodycarepla.net
*.ww38.bodycarepla.net
essentory.xyz
*.essentory.xyz
*.ww25.essentory.xyz
*.ww38.essentory.xyz
*.auth-dev.fullprice.net
*.backend.fullprice.net
fullprice.net
*.fullprice.net
*.rdweb.fullprice.net
*.vpn.fullprice.net
*.www.fullprice.net
*.admin.healthcare.it
*.analytics.healthcare.it
*.awsnonprod.healthcare.it
*.change.healthcare.it
healthcare.it
*.healthcare.it
*.notexistsdev.healthcare.it
*.notexistsjira.healthcare.it
*.toscanareferti.healthcare.it
*.hostmaster.ituber.it
ituber.it
*.ituber.it
*.remote.ituber.it
*.5deb4537-dac1-4ece-8458-3860dc6d1a47.krypto.deal
*.api.krypto.deal
*.app.krypto.deal
*.backup.krypto.deal
*.dbkmiglz.krypto.deal
*.dev.krypto.deal
krypto.deal
*.krypto.deal
*.marketing.krypto.deal
*.new.krypto.deal
*.staging.krypto.deal
*.stg.krypto.deal
*.uat.krypto.deal
*.jpjol.minzok.com
minzok.com
*.minzok.com
nfcsupermart.com
*.nfcsupermart.com
*.sub.nfcsupermart.com
*.backend.photolight.it
*.bi.photolight.it
*.demo.photolight.it
*.hostmaster.photolight.it
photolight.it
*.photolight.it
tradder.ai
*.tradder.ai
*.viz.tradder.ai
*.admin.uovz6jk3i2xd6u8d07z7gps.com
*.app.uovz6jk3i2xd6u8d07z7gps.com
*.blog.uovz6jk3i2xd6u8d07z7gps.com
*.demo.uovz6jk3i2xd6u8d07z7gps.com
*.dev.uovz6jk3i2xd6u8d07z7gps.com
*.dofmwvpn.uovz6jk3i2xd6u8d07z7gps.com
*.mail.uovz6jk3i2xd6u8d07z7gps.com
*.members.uovz6jk3i2xd6u8d07z7gps.com
*.qebqnhostmaster.uovz6jk3i2xd6u8d07z7gps.com
*.remote.uovz6jk3i2xd6u8d07z7gps.com
*.staging.uovz6jk3i2xd6u8d07z7gps.com
*.test.uovz6jk3i2xd6u8d07z7gps.com
uovz6jk3i2xd6u8d07z7gps.com
*.uovz6jk3i2xd6u8d07z7gps.com
*.www.uovz6jk3i2xd6u8d07z7gps.com
*.yandex-staff.uovz6jk3i2xd6u8d07z7gps.com
Other domains in certificate