Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kadoo.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 13, 2026
Valid Until
May 14, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A0:E5:3C:A2:A6:33:DC:7B:E3:CC:8E:B4:FF:89:A3:AD:CC:7F:9E:44:FA:DA:4B:71:60:6B:08:59:FF:90:6A:73
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
kadoo.it
*.kadoo.it
*.autodiscover.kadoo.it
*.demo.kadoo.it
*.supersets.kadoo.it
66maz.buzz
*.66maz.buzz
933883a1.buzz
*.933883a1.buzz
*.933883com-2z4cf.933883a1.buzz
astro-magia888.com
*.astro-magia888.com
*.autoconfig.astro-magia888.com
*.autodiscover.astro-magia888.com
*.flows.astro-magia888.com
*.nav.astro-magia888.com
*.random.astro-magia888.com
*.securetest.astro-magia888.com
*.spot.astro-magia888.com
*.test13.astro-magia888.com
*.ww1.astro-magia888.com
*.ww12.astro-magia888.com
*.ww7.astro-magia888.com
*.www.astro-magia888.com
asxclassaction.com.au
*.asxclassaction.com.au
bahagia.click
*.bahagia.click
*.m.bahagia.click
barges.com.au
*.barges.com.au
*.api.celestialairlines.co
*.app.celestialairlines.co
celestialairlines.co
*.celestialairlines.co
*.hostmaster.celestialairlines.co
*.www.celestialairlines.co
cityscapetop.com
*.cityscapetop.com
*.www.cityscapetop.com
*.corporate.eastland-mall.com
eastland-mall.com
*.eastland-mall.com
*.guest.eastland-mall.com
*.itp.eastland-mall.com
etsudoi.com
*.etsudoi.com
*.ww7.etsudoi.com
*.4wzbs5tvnw.ilwebmaster21.co
*.i4nrorxlxy.ilwebmaster21.co
ilwebmaster21.co
*.ilwebmaster21.co
*.ww16.ilwebmaster21.co
jaureguiberry.com
*.jaureguiberry.com
*.m.jaureguiberry.com
*.pagamento.jaureguiberry.com
*.www.jaureguiberry.com
jddy.me
*.jddy.me
laptopkeyreplacement.com
*.laptopkeyreplacement.com
*.ww7.laptopkeyreplacement.com
*.c33b140944be.ludxc.com
*.control.ludxc.com
ludxc.com
*.ludxc.com
*.mail.ludxc.com
*.api.oi776.com
*.backend.oi776.com
*.dev.oi776.com
oi776.com
*.oi776.com
*.www.oi776.com
*.immo.royal-cb.com
royal-cb.com
*.royal-cb.com
*.mg.sharkpump.fun
sharkpump.fun
*.sharkpump.fun
*.sitemaps.suklaa.com
suklaa.com
*.suklaa.com
*.ww11.suklaa.com
*.app.weddingsongs.wedding
*.dev.weddingsongs.wedding
weddingsongs.wedding
*.weddingsongs.wedding
*.www.weddingsongs.wedding
Other domains in certificate