Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=thexfiles.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 28, 2026
Valid Until
July 27, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:2C:1F:2A:C2:BF:CD:68:66:E3:2F:18:99:C5:AC:EA:26:36:F3:A2:65:5A:88:32:73:92:77:7A:07:23:67:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
psychtube.com
*.psychtube.com
22040.pet
*.22040.pet
*.5b9a217ec6a0.annuairetogo.pro
annuairetogo.pro
*.annuairetogo.pro
*.api.dngenius.com
*.crm.dngenius.com
*.demo.dngenius.com
*.dev.dngenius.com
dngenius.com
*.dngenius.com
*.help.dngenius.com
*.test.dngenius.com
*.ww16.dngenius.com
*.ww17.dngenius.com
*.ww25.dngenius.com
*.ww38.dngenius.com
*.admin.glittertech.dev
glittertech.dev
*.glittertech.dev
*.prod.glittertech.dev
*.cloud.key-space.com
*.cloudapp.key-space.com
key-space.com
*.key-space.com
*.mobileconnect.key-space.com
*.remote.key-space.com
*.sitemaps.key-space.com
*.ts.key-space.com
*.vpn2.key-space.com
*.www.key-space.com
*.assets.naturalonchain.com
*.backup.naturalonchain.com
*.dashboard.naturalonchain.com
naturalonchain.com
*.naturalonchain.com
*.no64c4.naturalonchain.com
*.secure.naturalonchain.com
*.v2.naturalonchain.com
*.web.naturalonchain.com
paradewa108.net
*.paradewa108.net
*.www.paradewa108.net
sedieortopediche.it
*.sedieortopediche.it
*.1785b418-6f04-4fea-b05c-0754bcb35acb.showmapping.com
showmapping.com
*.showmapping.com
*.send.skyprint.pro
skyprint.pro
*.skyprint.pro
*.ww38.skyprint.pro
*.admin.thexfiles.it
*.app.thexfiles.it
*.backend.thexfiles.it
*.demo.thexfiles.it
*.dev.thexfiles.it
*.hostmaster.thexfiles.it
*.intel.thexfiles.it
thexfiles.it
*.thexfiles.it
*.assets.tumblliving.com
*.cloud.tumblliving.com
*.mta-sts.tumblliving.com
*.new.tumblliving.com
*.rd.tumblliving.com
*.rds.tumblliving.com
*.rdweb.tumblliving.com
*.remote.tumblliving.com
tumblliving.com
*.tumblliving.com
*.www.tumblliving.com
*.13c10326-e160-4313-bad9-63a161c5fa1b.watchswrestling.lease
*.707bf072-6704-4648-aa81-be617dad5128.watchswrestling.lease
*.app.watchswrestling.lease
*.autodiscover.watchswrestling.lease
*.dev.watchswrestling.lease
*.remote.watchswrestling.lease
watchswrestling.lease
*.watchswrestling.lease
xtyhn.one
*.xtyhn.one
xx8771.cc
*.xx8771.cc
xx9777.cc
*.xx9777.cc
xx9921.cc
*.xx9921.cc
Other domains in certificate