Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=medicaloffice.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 13, 2026
Valid Until
July 12, 2026
53 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
32:0B:F7:C5:39:F6:D8:E5:FE:55:65:E5:D3:19:77:1F:AD:5E:7A:01:39:0C:D0:38:79:CC:E3:44:3D:07:52:61
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
otitis.it
*.otitis.it
*.api.otitis.it
*.dev.otitis.it
*.hostmaster.otitis.it
2112kw.club
*.2112kw.club
*.x2.2112kw.club
24casinosfurdeutsche.com
*.24casinosfurdeutsche.com
*.rustore.24casinosfurdeutsche.com
applyzer.shop
*.applyzer.shop
*.www.applyzer.shop
*.a.centralfloridaseniormeetings.com
centralfloridaseniormeetings.com
*.centralfloridaseniormeetings.com
*.qa.centralfloridaseniormeetings.com
*.v2.centralfloridaseniormeetings.com
deed.au
*.deed.au
*.email.englewoodcoloradohomes.com
englewoodcoloradohomes.com
*.englewoodcoloradohomes.com
*.www.englewoodcoloradohomes.com
*.forticlient.goguma.tv
goguma.tv
*.goguma.tv
*.jin.goguma.tv
*.secure.goguma.tv
*.w.goguma.tv
*.ww17.goguma.tv
*.autodiscover.hellonotes.xyz
hellonotes.xyz
*.hellonotes.xyz
*.ninuiautodiscover.hellonotes.xyz
*.test.hellonotes.xyz
*.ww25.hellonotes.xyz
jktelevision.com
*.jktelevision.com
medicaloffice.it
*.medicaloffice.it
*.mx.medicaloffice.it
*.boa.mixclou.com
*.checkout.mixclou.com
*.dww99.mixclou.com
*.m.mixclou.com
mixclou.com
*.mixclou.com
*.ns1.mixclou.com
*.ns2.mixclou.com
*.ww1.mixclou.com
*.ww2.mixclou.com
*.www.mixclou.com
*.2646eae6-ccbf-4d20-bcd2-b2718fffa8d4.newtechtrends.shop
*.71b3bdae-17db-4279-9a6d-1a3664b296f6.newtechtrends.shop
*.76d9bf73-3923-4918-816e-e1dbe1fe46cf.newtechtrends.shop
*.admin.newtechtrends.shop
*.api.newtechtrends.shop
*.app.newtechtrends.shop
*.assets.newtechtrends.shop
*.demo.newtechtrends.shop
*.email.newtechtrends.shop
newtechtrends.shop
*.newtechtrends.shop
*.supersets.newtechtrends.shop
*.cdn.pulau69aplk.cyou
pulau69aplk.cyou
*.pulau69aplk.cyou
*.new.spacefoodpro.us
*.second-phase.spacefoodpro.us
spacefoodpro.us
*.spacefoodpro.us
*.am5w8h.whyfwl.cn
*.dv4lhu.whyfwl.cn
*.ez63iq.whyfwl.cn
*.fnp4u4.whyfwl.cn
*.fskhx5.whyfwl.cn
*.fv0f7t.whyfwl.cn
*.gj74ku.whyfwl.cn
*.ii3sgq.whyfwl.cn
*.jvk2xz.whyfwl.cn
*.mdo9a7.whyfwl.cn
*.pvevrs.whyfwl.cn
*.umacq8.whyfwl.cn
*.us31mu.whyfwl.cn
*.vbok20.whyfwl.cn
*.w9964.whyfwl.cn
whyfwl.cn
*.whyfwl.cn
Other domains in certificate