Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=thecrawler.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:8D:DE:80:C2:D7:EF:90:66:B6:93:6F:55:68:C1:9E:AD:E6:B7:27:72:3A:5C:0D:C1:A4:9A:4B:64:6A:B5:91
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
mattatoi.com
*.mattatoi.com
*.hostmaster.mattatoi.com
*.mail.mattatoi.com
*.mail2.mattatoi.com
*.ww20.mattatoi.com
50898.blog
*.50898.blog
59012.center
*.59012.center
792586.top
*.792586.top
92188.blog
*.92188.blog
benzsteel.com
*.benzsteel.com
*.com.benzsteel.com
brazilmap.com
*.brazilmap.com
cakoi.channel
*.cakoi.channel
ckmagshjb.xyz
*.ckmagshjb.xyz
*.amt.dialyse.com
*.asso.dialyse.com
*.cinm.dialyse.com
*.cst.dialyse.com
dialyse.com
*.dialyse.com
ehv2eg.cyou
*.ehv2eg.cyou
elevateforgetech.xyz
*.elevateforgetech.xyz
fitnessalliance.run
*.fitnessalliance.run
freshhoki.xyz
*.freshhoki.xyz
gossipgardevoir.xyz
*.gossipgardevoir.xyz
gossipgumption.xyz
*.gossipgumption.xyz
great-housebingo.quest
*.great-housebingo.quest
greater.homes
*.greater.homes
hmpqe.bond
*.hmpqe.bond
ibvhn.gdn
*.ibvhn.gdn
idrboost01.vip
*.idrboost01.vip
ihvmigo.cc
*.ihvmigo.cc
kitchenkeepsakes.food
*.kitchenkeepsakes.food
kwyndy.top
*.kwyndy.top
*.app.legendi.it
*.dashboard.legendi.it
*.demo.legendi.it
*.dev.legendi.it
legendi.it
*.legendi.it
*.staging.legendi.it
lucky-oceancode.quest
*.lucky-oceancode.quest
otzuwk.gdn
*.otzuwk.gdn
pqbqzb.gdn
*.pqbqzb.gdn
qlmjj.top
*.qlmjj.top
sinceresightseers.xyz
*.sinceresightseers.xyz
*.astelmail.thecrawler.it
*.mail.thecrawler.it
*.mx.thecrawler.it
*.secure.thecrawler.it
thecrawler.it
*.thecrawler.it
tongtou549.lat
*.tongtou549.lat
turnaroundplanning.com
*.turnaroundplanning.com
*.72qxy3.usertr.info
*.staging.usertr.info
usertr.info
*.usertr.info
w13728092.com
*.w13728092.com
Other domains in certificate