Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sarago.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 19, 2026
Valid Until
May 20, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D7:69:D0:F2:30:00:DB:5F:69:9F:B2:05:C7:23:D4:3A:E6:45:10:C8:D7:50:EC:A4:7B:AB:DB:BA:F2:66:E1:6C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
hostservice.it
*.hostservice.it
*.backend.hostservice.it
*.hostmaster.hostservice.it
*.superset.hostservice.it
15442.cc
*.15442.cc
*.m.15442.cc
*.www.15442.cc
4344.my
*.4344.my
*.www.4344.my
583103.cc
*.583103.cc
*.www.583103.cc
78297.cc
*.78297.cc
*.www.78297.cc
8day.ag
*.8day.ag
*.cicd.8day.ag
*.random.8day.ag
*.www.8day.ag
alliancefox.com
*.alliancefox.com
*.www.alliancefox.com
*.admin.amgsmartlink.com
amgsmartlink.com
*.amgsmartlink.com
*.aniqmail.amgsmartlink.com
*.api.amgsmartlink.com
*.app.amgsmartlink.com
*.backup.amgsmartlink.com
*.blog.amgsmartlink.com
*.central.amgsmartlink.com
*.dashboard.amgsmartlink.com
*.dev.amgsmartlink.com
*.fvnhhassets.amgsmartlink.com
*.ilelfblog.amgsmartlink.com
*.mail.amgsmartlink.com
*.qa.amgsmartlink.com
*.secure.amgsmartlink.com
*.securentrycorp.amgsmartlink.com
*.staging.amgsmartlink.com
*.suhelfvnhhassets.amgsmartlink.com
*.test.amgsmartlink.com
*.vpn.amgsmartlink.com
*.www.amgsmartlink.com
amitcorp.com
*.amitcorp.com
*.mail.amitcorp.com
*.rds.amitcorp.com
*.remote.amitcorp.com
*.sitemaps.amitcorp.com
*.vpn2.amitcorp.com
*.www.amitcorp.com
bnikaroninasdalsphere.shop
*.bnikaroninasdalsphere.shop
*.login.bnikaroninasdalsphere.shop
*.mail5.bnikaroninasdalsphere.shop
*.mailer.bnikaroninasdalsphere.shop
*.mailhost.bnikaroninasdalsphere.shop
*.mx01.bnikaroninasdalsphere.shop
*.new.bnikaroninasdalsphere.shop
*.poczta.bnikaroninasdalsphere.shop
*.shop.bnikaroninasdalsphere.shop
*.static.bnikaroninasdalsphere.shop
*.webmail.bnikaroninasdalsphere.shop
*.www6.bnikaroninasdalsphere.shop
*.blogs.holyfamilyhosp.org
*.clarity.holyfamilyhosp.org
*.cpanel.holyfamilyhosp.org
*.cpcalendars.holyfamilyhosp.org
*.cust87.holyfamilyhosp.org
*.frank.holyfamilyhosp.org
holyfamilyhosp.org
*.holyfamilyhosp.org
*.image-al.holyfamilyhosp.org
*.isis.holyfamilyhosp.org
*.partner.holyfamilyhosp.org
*.pdgn2.holyfamilyhosp.org
*.qmail.holyfamilyhosp.org
*.sg.holyfamilyhosp.org
*.sitemaps.holyfamilyhosp.org
*.vault.holyfamilyhosp.org
*.webmail.holyfamilyhosp.org
*.app.sarago.it
sarago.it
*.sarago.it
*.www.sarago.it
Other domains in certificate