Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=configurations.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 17, 2026
Valid Until
July 16, 2026
66 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AF:E4:B0:20:03:77:90:D1:45:D9:23:9C:79:AF:83:7D:24:87:CD:94:80:AA:6A:D1:BA:AD:BE:75:0E:9F:F1:42
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
9llm.com
*.9llm.com
*.mta-sts.9llm.com
7357.it
*.7357.it
assetati.it
*.assetati.it
bitcoinmarkets.co
*.bitcoinmarkets.co
*.hostmaster.bitcoinmarkets.co
*.signup.bitcoinmarkets.co
*.www.bitcoinmarkets.co
coffeemugs.art
*.coffeemugs.art
*.dashboard.coffeemugs.art
*.dev-bi.coffeemugs.art
*.explore.coffeemugs.art
concorddirect.info
*.concorddirect.info
*.nh-electric-motors-inc.concorddirect.info
configurations.it
*.configurations.it
*.www.configurations.it
cosmic345.com
*.cosmic345.com
cubancigarbox.be
*.cubancigarbox.be
*.ww25.cubancigarbox.be
*.ww38.cubancigarbox.be
*.api.dreamlove.it
*.dashboard.dreamlove.it
dreamlove.it
*.dreamlove.it
*.email.dreamlove.it
*.gateway.dreamlove.it
*.imap4.dreamlove.it
druther.ca
*.druther.ca
*.qc.druther.ca
floatspasandiego.com
*.floatspasandiego.com
*.ww38.floatspasandiego.com
geometry-tryhard.top
*.geometry-tryhard.top
*.pay.geometry-tryhard.top
gold-drakons.biz
*.gold-drakons.biz
knightrust.com
*.knightrust.com
*.members.port-ad.info
port-ad.info
*.port-ad.info
*.4g.reddymadefarm.com
reddymadefarm.com
*.reddymadefarm.com
*.ww25.reddymadefarm.com
*.blog.salusterceirizacao.com.br
salusterceirizacao.com.br
*.salusterceirizacao.com.br
*.ww25.salusterceirizacao.com.br
*.bbs.sellyourantiquecar.com
*.git.sellyourantiquecar.com
sellyourantiquecar.com
*.sellyourantiquecar.com
*.ww25.sellyourantiquecar.com
*.ww38.sellyourantiquecar.com
*.admin.theitalianfood.it
*.api.theitalianfood.it
theitalianfood.it
*.theitalianfood.it
*.api.tuvalumarathon.com
*.app.tuvalumarathon.com
*.dev.tuvalumarathon.com
*.internal.tuvalumarathon.com
*.temp.tuvalumarathon.com
tuvalumarathon.com
*.tuvalumarathon.com
*.vdi.tuvalumarathon.com
*.sitemaps.unshakablesisterhood.com
unshakablesisterhood.com
*.unshakablesisterhood.com
winmatch55.info
*.winmatch55.info
*.2fwww.yao17173.com
*.random.yao17173.com
*.ww25.yao17173.com
*.ww38.yao17173.com
yao17173.com
*.yao17173.com
Other domains in certificate