Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=mondotel.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
45:29:F0:0F:71:55:93:08:95:CF:C7:5C:93:29:C5:8B:39:77:F9:77:93:5E:9E:40:FC:AD:DB:54:DB:35:6A:31
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
lovetime.it
*.lovetime.it
linkmobile.it
*.linkmobile.it
litica.it
*.litica.it
lovediamond.it
*.lovediamond.it
lsegnrxbkr.vip
*.lsegnrxbkr.vip
*.bi.lunen.it
lunen.it
*.lunen.it
makerspacetop.com
*.makerspacetop.com
marketservices.it
*.marketservices.it
masseurs.it
*.masseurs.it
massimoprofitto.it
*.massimoprofitto.it
meetposhcontentugc.com
*.meetposhcontentugc.com
megasoft.it
*.megasoft.it
melise.it
*.melise.it
memlbo.cc
*.memlbo.cc
mibfnb.pro
*.mibfnb.pro
mikor.it
*.mikor.it
miliarder303.org
*.miliarder303.org
mingle.it
*.mingle.it
mobilepaymenttechnology.it
*.mobilepaymenttechnology.it
mondoeconomico.it
*.mondoeconomico.it
mondotel.it
*.mondotel.it
monitaniodealprisectrl.cyou
*.monitaniodealprisectrl.cyou
motor-actuator-249616687.click
*.motor-actuator-249616687.click
motorweek.it
*.motorweek.it
murph.it
*.murph.it
muthu.it
*.muthu.it
mutuoatassofisso.it
*.mutuoatassofisso.it
n5kssb.top
*.n5kssb.top
nakanobu-personal-932185848.click
*.nakanobu-personal-932185848.click
naturegardenharvest.live
*.naturegardenharvest.live
nauti.it
*.nauti.it
nephews.it
*.nephews.it
new-life-696718126.click
*.new-life-696718126.click
newagemusicgroup.live
*.newagemusicgroup.live
nfw27.top
*.nfw27.top
nhacailucky88.contact
*.nhacailucky88.contact
notizulia.info
*.notizulia.info
novafriburgo.it
*.novafriburgo.it
nuga.in
*.nuga.in
nzlbu.pro
*.nzlbu.pro
omelia.it
*.omelia.it
oomphtcc.com
*.oomphtcc.com
osid.it
*.osid.it
ost.design
*.ost.design
Other domains in certificate