Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=malcesine.info
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 01, 2026
Valid Until
May 02, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:EB:E5:43:6E:80:D2:AF:65:16:2A:FC:30:4F:E8:59:AD:55:F1:1E:2D:2B:A3:E5:B7:8C:3B:90:C4:C0:02:2A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
75 domains
wardrop.com
*.wardrop.com
*.ww1.wardrop.com
bodytint.com
*.bodytint.com
*.ww38.bodytint.com
cableado.com
*.cableado.com
*.random.cableado.com
*.4.dailysweeties.com
*.antispam.dailysweeties.com
dailysweeties.com
*.dailysweeties.com
*.drac.dailysweeties.com
*.events.dailysweeties.com
*.london.dailysweeties.com
*.motor.dailysweeties.com
*.nod32.dailysweeties.com
*.sys.dailysweeties.com
*.typo3.dailysweeties.com
*.wp.dailysweeties.com
*.yb.dailysweeties.com
dietech-corp.com
*.dietech-corp.com
*.wiki.dietech-corp.com
*.www.dietech-corp.com
earthrated-online.pl
*.earthrated-online.pl
ensignjordan.website
*.ensignjordan.website
*.cpcalendars.fuckcasting.com
fuckcasting.com
*.fuckcasting.com
h2betlogin.casino
*.h2betlogin.casino
*.webvpn.h2betlogin.casino
hdseria.vip
*.hdseria.vip
*.tv.hdseria.vip
*.tw.hdseria.vip
*.lord000s.lordfilm.fans
lordfilm.fans
*.lordfilm.fans
*.mr.lordfilm.fans
malcesine.info
*.malcesine.info
*.ww25.malcesine.info
money365.bet
*.money365.bet
*.mycard.money365.bet
*.staging.money365.bet
nimiti.cfd
*.nimiti.cfd
snovetajemstvi.com
*.snovetajemstvi.com
spanial.com
*.spanial.com
*.www.spanial.com
support-case-coinbase.com
*.support-case-coinbase.com
*.ww25.support-case-coinbase.com
ubr7771.com
*.ubr7771.com
*.sitemap.unikbetslots.store
*.sitemaps.unikbetslots.store
unikbetslots.store
*.unikbetslots.store
*.ww25.unikbetslots.store
*.ww38.unikbetslots.store
*.cc.zhangxiaoyu.cc
*.insight.zhangxiaoyu.cc
*.m.zhangxiaoyu.cc
*.ww25.zhangxiaoyu.cc
zhangxiaoyu.cc
*.zhangxiaoyu.cc
Other domains in certificate