Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=magz.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A9:E8:2E:61:A3:B2:1C:B9:59:66:EE:46:58:BA:E3:01:35:CA:1A:30:B9:38:E8:2F:48:04:68:7A:52:6C:BA:F8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
directproducts.com
*.directproducts.com
*.mail.directproducts.com
*.owa.directproducts.com
*.ww42.directproducts.com
014942.co
*.014942.co
014947.co
*.014947.co
01858.co
*.01858.co
218552.xyz
*.218552.xyz
65931.my
*.65931.my
africachamberofironandsteel.org
*.africachamberofironandsteel.org
aliensaints.com
*.aliensaints.com
americanclassiccars.it
*.americanclassiccars.it
*.demo.americanclassiccars.it
*.www.americanclassiccars.it
fitnessoriginpro.club
*.fitnessoriginpro.club
fitnessproelite.club
*.fitnessproelite.club
fitnessproexcel.club
*.fitnessproexcel.club
fitnessprofusion.club
*.fitnessprofusion.club
fitnesspronavigator.club
*.fitnesspronavigator.club
fitnesspros.club
*.fitnesspros.club
fitnesstrade.club
*.fitnesstrade.club
fleeting.xyz
*.fleeting.xyz
hazlope.com
*.hazlope.com
hscwang7y3m.skin
*.hscwang7y3m.skin
ktxtorrent148.com
*.ktxtorrent148.com
linkingaiq.com
*.linkingaiq.com
livewellapartments.co.uk
*.livewellapartments.co.uk
mafiaaclothingco.com
*.mafiaaclothingco.com
*.analytic.magz.it
*.analytics.magz.it
*.analyze.magz.it
*.api.magz.it
*.backend.magz.it
*.forecast.magz.it
*.intel.magz.it
magz.it
*.magz.it
*.msexch2k13.magz.it
*.mywebmail.magz.it
*.remote.magz.it
*.vpn.magz.it
mallorcaairport.co
*.mallorcaairport.co
marykeys.com
*.marykeys.com
mawar77.blog
*.mawar77.blog
mj-edu.cn
*.mj-edu.cn
psylisten.info
*.psylisten.info
*.com.txtv143.vip
txtv143.vip
*.txtv143.vip
*.mail.william-angel.com
william-angel.com
*.william-angel.com
*.app.yaah.it
*.imap.yaah.it
*.redash.yaah.it
*.staging.yaah.it
*.stats.yaah.it
*.webmail.yaah.it
yaah.it
*.yaah.it
Other domains in certificate