Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=myreal.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 03, 2026
Valid Until
July 02, 2026
58 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D7:0F:CF:F9:6C:FC:43:BD:C8:E1:34:88:B4:71:A0:4C:88:29:55:DB:36:D9:21:4A:D0:39:B3:5F:7F:01:DE:68
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
myreal.it
*.myreal.it
*.api.myreal.it
*.backend.myreal.it
*.ci.myreal.it
*.data.myreal.it
*.hostmaster.myreal.it
*.mail.myreal.it
*.notexistsapi.myreal.it
*.staging.myreal.it
*.superset.myreal.it
*.admin.barkeranddobson.com
*.app.barkeranddobson.com
barkeranddobson.com
*.barkeranddobson.com
*.c34db29d-2a1a-461a-b8ba-b950313dd0d8.barkeranddobson.com
*.demo.barkeranddobson.com
*.dev.barkeranddobson.com
*.hs2.barkeranddobson.com
*.rds.barkeranddobson.com
*.rdweb.barkeranddobson.com
*.remote.barkeranddobson.com
*.app.gemprompts.club
gemprompts.club
*.gemprompts.club
*.2194l.journeytravelnarratives.xyz
journeytravelnarratives.xyz
*.journeytravelnarratives.xyz
*.kwid9.journeytravelnarratives.xyz
*.lbcp6.journeytravelnarratives.xyz
*.qdiek.journeytravelnarratives.xyz
*.zyu43.journeytravelnarratives.xyz
*.analytic.overthedoors.it
*.app.overthedoors.it
*.as3.overthedoors.it
*.as5.overthedoors.it
*.ds5.overthedoors.it
overthedoors.it
*.overthedoors.it
*.t0420.overthedoors.it
*.t218150.overthedoors.it
*.t265198.overthedoors.it
*.t324235.overthedoors.it
*.t356220.overthedoors.it
*.t533261.overthedoors.it
*.t6960.overthedoors.it
*.t696385.overthedoors.it
*.thumbors.overthedoors.it
*.21981809-d1aa-49eb-ba30-9ef52d66573f.pingpongclubmoscow.com
*.2e3a5ef3-2b76-44e7-b3e3-2a2b5630808e.pingpongclubmoscow.com
*.a690208f-ab01-47e0-bd9a-dd881cc7d4fc.pingpongclubmoscow.com
*.accounts.pingpongclubmoscow.com
*.affrcdev.pingpongclubmoscow.com
*.anyconnect.pingpongclubmoscow.com
*.c01d09a1-0824-4177-a13e-ea7248d314c8.pingpongclubmoscow.com
*.clients.pingpongclubmoscow.com
*.dashboard.pingpongclubmoscow.com
*.dev.pingpongclubmoscow.com
*.m.pingpongclubmoscow.com
pingpongclubmoscow.com
*.pingpongclubmoscow.com
*.remote.pingpongclubmoscow.com
*.summary.pingpongclubmoscow.com
*.voorraad.pingpongclubmoscow.com
*.co.seriesmp4.tv
*.com.seriesmp4.tv
*.online.seriesmp4.tv
seriesmp4.tv
*.seriesmp4.tv
*.www.seriesmp4.tv
*.acronis.spirits.events
*.ec4a5406-612c-4e22-8022-f1de11bc730f.spirits.events
spirits.events
*.spirits.events
*.wandering.spirits.events
*.02cdd51f-749c-48ff-b6da-2fc6b7a77c55.storagetanks.in
*.backup.storagetanks.in
*.conteudo.storagetanks.in
*.files.storagetanks.in
*.live.storagetanks.in
*.m.storagetanks.in
*.online.storagetanks.in
*.random.storagetanks.in
storagetanks.in
*.storagetanks.in
*.test.storagetanks.in
*.2c1234ec-d2fe-11eb-9d55-b46e08cda458.wwwezdrive.com
*.ww3.wwwezdrive.com
wwwezdrive.com
*.wwwezdrive.com
Other domains in certificate