Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=medicalbook.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:2A:DF:BB:3F:28:EC:C0:62:4C:55:9D:F2:BB:80:75:F7:73:AD:95:AF:A0:E6:BA:32:B9:90:0D:E0:C1:90:18
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
nowpay.it
*.nowpay.it
lpjqp.com
*.lpjqp.com
lumbars.it
*.lumbars.it
lylked.cc
*.lylked.cc
manhattanremodeler.com
*.manhattanremodeler.com
matadorbetyeni2025.com
*.matadorbetyeni2025.com
medicalbook.it
*.medicalbook.it
medicalpracticesoftware382821.icu
*.medicalpracticesoftware382821.icu
menanewspaper.com
*.menanewspaper.com
merchants.it
*.merchants.it
mikklxo.com
*.mikklxo.com
mkj8wx.top
*.mkj8wx.top
mlo61s6.cyou
*.mlo61s6.cyou
modeltime.it
*.modeltime.it
montgolfiere.it
*.montgolfiere.it
mooting.it
*.mooting.it
mortgages.it
*.mortgages.it
mothernaturestudio.com
*.mothernaturestudio.com
msportlogin.vip
*.msportlogin.vip
mtav576.com
*.mtav576.com
mundomaca.com
*.mundomaca.com
muskeggy.com
*.muskeggy.com
mxavsp278.com
*.mxavsp278.com
*.intranet.n0velty.com
n0velty.com
*.n0velty.com
n2o.it
*.n2o.it
n62tt.vip
*.n62tt.vip
newiphone5.it
*.newiphone5.it
nextry.it
*.nextry.it
nextsign.it
*.nextsign.it
niel.it
*.niel.it
nlitfp.me
*.nlitfp.me
noboomusic.com
*.noboomusic.com
notizieverificate.it
*.notizieverificate.it
nyavsp236.com
*.nyavsp236.com
nyavsp278.com
*.nyavsp278.com
nytgamescrossplay.com
*.nytgamescrossplay.com
octubre.it
*.octubre.it
ogamfivesenses.com
*.ogamfivesenses.com
onlinecalzature.it
*.onlinecalzature.it
onshoes-greece.com
*.onshoes-greece.com
optioned.it
*.optioned.it
oqtmjf.today
*.oqtmjf.today
orderwork.it
*.orderwork.it
overmind.it
*.overmind.it
Other domains in certificate