Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=thecrawler.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026 54 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:8D:DE:80:C2:D7:EF:90:66:B6:93:6F:55:68:C1:9E:AD:E6:B7:27:72:3A:5C:0D:C1:A4:9A:4B:64:6A:B5:91
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
mattatoi.com *.mattatoi.com *.hostmaster.mattatoi.com *.mail.mattatoi.com *.mail2.mattatoi.com *.ww20.mattatoi.com

Other domains in certificate

50898.blog *.50898.blog
59012.center *.59012.center
792586.top *.792586.top
92188.blog *.92188.blog
benzsteel.com *.benzsteel.com *.com.benzsteel.com
brazilmap.com *.brazilmap.com
cakoi.channel *.cakoi.channel
ckmagshjb.xyz *.ckmagshjb.xyz
*.amt.dialyse.com *.asso.dialyse.com *.cinm.dialyse.com *.cst.dialyse.com dialyse.com *.dialyse.com
ehv2eg.cyou *.ehv2eg.cyou
elevateforgetech.xyz *.elevateforgetech.xyz
fitnessalliance.run *.fitnessalliance.run
freshhoki.xyz *.freshhoki.xyz
gossipgardevoir.xyz *.gossipgardevoir.xyz
gossipgumption.xyz *.gossipgumption.xyz
great-housebingo.quest *.great-housebingo.quest
greater.homes *.greater.homes
hmpqe.bond *.hmpqe.bond
ibvhn.gdn *.ibvhn.gdn
idrboost01.vip *.idrboost01.vip
ihvmigo.cc *.ihvmigo.cc
kitchenkeepsakes.food *.kitchenkeepsakes.food
kwyndy.top *.kwyndy.top
*.app.legendi.it *.dashboard.legendi.it *.demo.legendi.it *.dev.legendi.it legendi.it *.legendi.it *.staging.legendi.it
lucky-oceancode.quest *.lucky-oceancode.quest
otzuwk.gdn *.otzuwk.gdn
pqbqzb.gdn *.pqbqzb.gdn
qlmjj.top *.qlmjj.top
sinceresightseers.xyz *.sinceresightseers.xyz
*.astelmail.thecrawler.it *.mail.thecrawler.it *.mx.thecrawler.it *.secure.thecrawler.it thecrawler.it *.thecrawler.it
tongtou549.lat *.tongtou549.lat
turnaroundplanning.com *.turnaroundplanning.com
*.72qxy3.usertr.info *.staging.usertr.info usertr.info *.usertr.info
w13728092.com *.w13728092.com