Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cartilaris-site.online
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 24, 2026
Valid Until
July 23, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
11:49:3E:3E:3B:20:78:93:E6:E6:BE:80:62:F8:11:49:A6:4B:56:AF:59:2D:AA:8F:60:4A:68:2B:F8:28:11:CD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
orangetech.com
*.orangetech.com
*.comune.orangetech.com
*.mail.orangetech.com
*.mx.orangetech.com
*.pv.orangetech.com
*.store.orangetech.com
*.vpn.orangetech.com
10160.it
*.10160.it
*.hostmaster.10160.it
*.wwww.10160.it
baccara.it
*.baccara.it
*.www.baccara.it
cartilaris-site.online
*.cartilaris-site.online
cepostaperte.it
*.cepostaperte.it
*.demo.cepostaperte.it
*.dev.cepostaperte.it
daddygirls.cloud
*.daddygirls.cloud
*.analytic.demax.it
*.analytics.demax.it
*.dashboard.demax.it
demax.it
*.demax.it
*.dns.demax.it
*.hostmaster.demax.it
*.metrics.demax.it
*.mx.demax.it
*.telebuna.demax.it
*.visual.demax.it
*.9877da0d-f015-4a46-9457-a4087c0d379e.en-oosh2.com
*.admin.en-oosh2.com
*.api.en-oosh2.com
*.app.en-oosh2.com
*.assets.en-oosh2.com
*.backup.en-oosh2.com
*.dcddb12e-267e-41e3-afc9-e3022bf98dfc.en-oosh2.com
*.de.en-oosh2.com
*.demo.en-oosh2.com
*.dev.en-oosh2.com
en-oosh2.com
*.en-oosh2.com
*.en.en-oosh2.com
*.fr.en-oosh2.com
*.hostmaster.en-oosh2.com
*.painel.en-oosh2.com
*.ru.en-oosh2.com
*.shop.en-oosh2.com
*.test.en-oosh2.com
*.uk.en-oosh2.com
*.vpn.en-oosh2.com
*.www.en-oosh2.com
*.xzbeibackup.en-oosh2.com
*.zh.en-oosh2.com
exploreanddesign.com
*.exploreanddesign.com
*.web.exploreanddesign.com
icc.bio
*.icc.bio
*.wr.icc.bio
*.mailx.palmcreekcomputer.club
palmcreekcomputer.club
*.palmcreekcomputer.club
rentmycarpark.com
*.rentmycarpark.com
rupasi.online
*.rupasi.online
sspaceeticil.com
*.sspaceeticil.com
*.mx.surfsup.com.au
surfsup.com.au
*.surfsup.com.au
*.login.targetresult.com
targetresult.com
*.targetresult.com
trippacking.com
*.trippacking.com
*.rtx.vostro.store
*.rtx1.vostro.store
vostro.store
*.vostro.store
*.www.vostro.store
wrapped619.com
*.wrapped619.com
xn--kamienfen-57a.de
*.xn--kamienfen-57a.de
Other domains in certificate