Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=malinda.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
78 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
42:EC:69:A8:67:FC:C3:0D:47:D9:2F:8C:88:DD:35:3F:50:3F:3B:25:5C:DB:E7:40:FC:D6:14:E9:BC:28:C7:19
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
restos.it
*.restos.it
malinda.it
*.malinda.it
*.ww.malinda.it
molecolegioielli.it
*.molecolegioielli.it
moreimpressive.com
*.moreimpressive.com
murature.it
*.murature.it
naniwa.co
*.naniwa.co
netryfit.top
*.netryfit.top
neveralone.it
*.neveralone.it
nonsolosposi.it
*.nonsolosposi.it
notionomatic.com
*.notionomatic.com
nurse-mx1.click
*.nurse-mx1.click
nycityhomes.com
*.nycityhomes.com
o8556.cam
*.o8556.cam
odds.bot
*.odds.bot
omt56i.co
*.omt56i.co
onesharing.it
*.onesharing.it
onlineinsurancequote.it
*.onlineinsurancequote.it
open.london
*.open.london
otcfe.com
*.otcfe.com
outage.it
*.outage.it
outburst.it
*.outburst.it
outhouse.it
*.outhouse.it
palabra.it
*.palabra.it
personalwebsite.it
*.personalwebsite.it
phoneconference.it
*.phoneconference.it
pickytails.com
*.pickytails.com
play-lunar-blitz.xyz
*.play-lunar-blitz.xyz
pontus.it
*.pontus.it
pornoblog.it
*.pornoblog.it
prava-online7.top
*.prava-online7.top
prettylittleting.us
*.prettylittleting.us
prevented.it
*.prevented.it
private-tour-guide-in-mb8.click
*.private-tour-guide-in-mb8.click
produzione.it
*.produzione.it
purecode.it
*.purecode.it
qle.it
*.qle.it
qt56r5t.top
*.qt56r5t.top
quarterbacks.it
*.quarterbacks.it
quimicalps.com
*.quimicalps.com
realestatemortgages.it
*.realestatemortgages.it
redfood.it
*.redfood.it
refurtiva.it
*.refurtiva.it
renovation-portugal-906600119.click
*.renovation-portugal-906600119.click
revokaer.com
*.revokaer.com
Other domains in certificate