Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=montegeneroso.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BF:4D:41:0F:AE:72:34:A8:85:2F:4F:E4:61:76:94:DF:FC:C9:C5:70:42:68:5B:61:C1:EB:71:5B:4D:72:12:6A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
labiale.com
*.labiale.com
*.analytics.labiale.com
*.remote.labiale.com
789bet35.com
*.789bet35.com
*.demo.789bet35.com
*.dev.789bet35.com
alaskasworld.run
*.alaskasworld.run
bionuri.com
*.bionuri.com
*.bionuri1.bionuri.com
deverbeelding.com
*.deverbeelding.com
*.mail.deverbeelding.com
*.portal.deverbeelding.com
*.secureaccess.deverbeelding.com
*.vpn1.deverbeelding.com
*.vpn2.deverbeelding.com
docsquify.com
*.docsquify.com
*.hostmaster.docsquify.com
greaterindecatur.com
*.greaterindecatur.com
*.pgsql.greaterindecatur.com
*.1yme1.hd47v.top
*.aqzmk.hd47v.top
hd47v.top
*.hd47v.top
*.kwid9.hd47v.top
hondenherplaatsing.be
*.hondenherplaatsing.be
*.ww38.hondenherplaatsing.be
jazmynnyx.com
*.jazmynnyx.com
*.sitemap.jazmynnyx.com
*.aniqmail.johari.it
*.dashs.johari.it
johari.it
*.johari.it
*.superset.johari.it
*.back.lamaisoncoloniale.com
lamaisoncoloniale.com
*.lamaisoncoloniale.com
*.secureaccess.lamaisoncoloniale.com
*.ssl.lamaisoncoloniale.com
leconfidentindiscret.fr
*.leconfidentindiscret.fr
*.wildcard.leconfidentindiscret.fr
modded-1.club
*.modded-1.club
*.ww17.modded-1.club
*.desktop.montegeneroso.com
montegeneroso.com
*.montegeneroso.com
*.support.montegeneroso.com
*.ww1.montegeneroso.com
*.minm.naira.live
naira.live
*.naira.live
*.app.radiantdovira.com
*.intranet.radiantdovira.com
radiantdovira.com
*.radiantdovira.com
rolloverrover.com
*.rolloverrover.com
*.login.subscribers.live
*.mail.subscribers.live
*.ns1.subscribers.live
*.o365.subscribers.live
subscribers.live
*.subscribers.live
*.ww38.subscribers.live
*.betty.tamagobit.com
*.bill.tamagobit.com
*.bob.tamagobit.com
*.buffy.tamagobit.com
tamagobit.com
*.tamagobit.com
*.backend.virtualjaguar.com
*.gql.virtualjaguar.com
virtualjaguar.com
*.virtualjaguar.com
*.smtp-1.whatsappindir.net
whatsappindir.net
*.whatsappindir.net
*.carolineg.zenpla.net
zenpla.net
*.zenpla.net
Other domains in certificate