Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=epal.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 30, 2026
Valid Until
July 29, 2026
33 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:1B:E1:21:27:43:BB:94:CB:CB:49:B6:D1:5D:35:1B:0C:23:F8:A3:CE:B8:62:DC:6B:08:00:1C:0B:DF:1B:C7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
gujjar.com
*.gujjar.com
*.bhoomi.gujjar.com
*.krishchawda.gujjar.com
*.mukesh.gujjar.com
*.rashid.gujjar.com
*.sattar.gujjar.com
*.shahzad.gujjar.com
*.sony.gujjar.com
126s.xyz
*.126s.xyz
*.cc.126s.xyz
*.com.126s.xyz
*.kuaimao.126s.xyz
*.tv.126s.xyz
*.vip.126s.xyz
abctrad.eu
*.abctrad.eu
*.appeltern.abctrad.eu
*.dinteloord.abctrad.eu
*.eersel.abctrad.eu
*.hengelo.abctrad.eu
*.koudekerk.abctrad.eu
*.leersum.abctrad.eu
*.lelystad.abctrad.eu
*.melick.abctrad.eu
*.puttershoek.abctrad.eu
*.voorhout.abctrad.eu
*.westergeest.abctrad.eu
*.zwaag.abctrad.eu
*.4jslg.bze.com.pl
*.alpha.bze.com.pl
bze.com.pl
*.bze.com.pl
*.citrix.bze.com.pl
*.ftp.bze.com.pl
*.hostmaster.bze.com.pl
*.j23.bze.com.pl
*.mail.bze.com.pl
*.owa.bze.com.pl
*.pop.bze.com.pl
*.smtp.bze.com.pl
*.www.bze.com.pl
*.app.clickto.it
*.backend.clickto.it
clickto.it
*.clickto.it
*.dashboard.clickto.it
*.demo.clickto.it
*.dev.clickto.it
*.staging.clickto.it
*.superset.clickto.it
*.albano.epal.it
epal.it
*.epal.it
katywestglass.com
*.katywestglass.com
*.ww25.katywestglass.com
*.46af0e69-3309-41ca-bba1-b73415230e91.robloxtools.me
*.mail.robloxtools.me
robloxtools.me
*.robloxtools.me
*.booking.supersoda69.info
*.busfor.supersoda69.info
*.cpanel.supersoda69.info
*.dostavka.supersoda69.info
*.jira.supersoda69.info
*.krisha.supersoda69.info
*.member.supersoda69.info
*.mx1.supersoda69.info
*.mysql.supersoda69.info
*.petscar.supersoda69.info
*.pochta.supersoda69.info
*.ponyexpress.supersoda69.info
*.samples.supersoda69.info
*.shipex.supersoda69.info
*.status.supersoda69.info
supersoda69.info
*.supersoda69.info
*.web02.supersoda69.info
*.web2.supersoda69.info
*.webmail.supersoda69.info
*.westernunions-uz.supersoda69.info
*.www1.supersoda69.info
*.youla.supersoda69.info
tapnip.vip
*.tapnip.vip
*.ww25.tapnip.vip
Other domains in certificate