Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=newyorkpost.cm
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026
37 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:C8:33:79:74:6B:2C:20:46:6C:1C:FF:F7:54:AB:92:5A:A6:5B:51:4B:3C:88:3F:1F:CB:43:82:65:89:4D:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
damned.it
*.damned.it
*.app.damned.it
*.ar.damned.it
*.asp.damned.it
*.astelmail.damned.it
*.bbs.damned.it
*.citrixcloud.damned.it
*.dash.damned.it
*.email.damned.it
*.est-vpn.damned.it
*.exchange.damned.it
*.go.damned.it
*.heip.damned.it
*.helpdesk.damned.it
*.hostmaster.damned.it
*.i.damned.it
*.mail.damned.it
*.man.damned.it
*.metrics.damned.it
*.nvdi.damned.it
*.owa.damned.it
*.portal.damned.it
*.preview.damned.it
*.pro.damned.it
*.reports.damned.it
*.stats.damned.it
*.superset.damned.it
*.visual.damned.it
*.vpnma.damned.it
*.wwww.damned.it
*.xd.damned.it
26635.my
*.26635.my
anieai.com
*.anieai.com
*.www.anieai.com
*.32.annafrank.it
annafrank.it
*.annafrank.it
*.w.annafrank.it
carandhouseinsurance.com
*.carandhouseinsurance.com
*.guiweb.carandhouseinsurance.com
*.hostmaster.liveu.it
liveu.it
*.liveu.it
*.mx.liveu.it
*.nkwnamx.liveu.it
*.www.liveu.it
nacey.com
*.nacey.com
*.ww25.nacey.com
newyorkpost.cm
*.newyorkpost.cm
*.ww25.newyorkpost.cm
*.hostmaster.oiltest.it
oiltest.it
*.oiltest.it
*.remote.oiltest.it
*.hostmaster.rtopia.com
rtopia.com
*.rtopia.com
*.kfmspx.s9gamedownload.one
s9gamedownload.one
*.s9gamedownload.one
*.admin.scimmiotti.it
*.api.scimmiotti.it
*.dash.scimmiotti.it
*.dashboard.scimmiotti.it
*.demo.scimmiotti.it
*.dev.scimmiotti.it
*.intelligence.scimmiotti.it
scimmiotti.it
*.scimmiotti.it
*.staging.scimmiotti.it
*.superset.scimmiotti.it
*.hostmaster.wetransfr.com
wetransfr.com
*.wetransfr.com
*.coast.xcao.tv
*.eu-1.xcao.tv
*.player.xcao.tv
*.portal.xcao.tv
*.ww25.xcao.tv
*.ww38.xcao.tv
xcao.tv
*.xcao.tv
Other domains in certificate