Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=mymusicsheets.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 16, 2026
Valid Until
June 14, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
25:97:84:D6:CC:63:42:22:0D:A8:60:DF:29:82:EF:F7:88:8E:12:82:16:EE:0E:D5:EC:06:F0:5A:01:CB:7F:12
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
67 domains
toscany.com
*.toscany.com
*.ww38.toscany.com
agrivoltaic.com.au
*.agrivoltaic.com.au
*.random.agrivoltaic.com.au
backnine.com.au
*.backnine.com.au
*.mail.backnine.com.au
bala.au
*.bala.au
*.kata.bala.au
*.ww16.bala.au
*.ww38.bala.au
ediblebouquets.org
*.ediblebouquets.org
*.random.ediblebouquets.org
footslaveauditions.com
*.footslaveauditions.com
*.members.footslaveauditions.com
fussballstollen.de
*.fussballstollen.de
*.random.fussballstollen.de
lyricsbird.com
*.lyricsbird.com
mymusicsheets.com
*.mymusicsheets.com
*.hostmaster.paranoide-schizophrenie.de
paranoide-schizophrenie.de
*.paranoide-schizophrenie.de
rococoliverpool.com
*.rococoliverpool.com
*.ww38.rococoliverpool.com
*.random.showgoodwill.com
showgoodwill.com
*.showgoodwill.com
*.hostmaster.systemcontrocenter.com
*.mx7.systemcontrocenter.com
systemcontrocenter.com
*.systemcontrocenter.com
*.app.thetraitor.xyz
*.m.thetraitor.xyz
*.ns2.thetraitor.xyz
*.sitemap.thetraitor.xyz
*.sitemaps.thetraitor.xyz
thetraitor.xyz
*.thetraitor.xyz
*.wildcard.thetraitor.xyz
*.ww25.thetraitor.xyz
*.www.thetraitor.xyz
*.random.toyotatis.com
toyotatis.com
*.toyotatis.com
*.ww25.toyotatis.com
*.ww38.toyotatis.com
*.api.wano8.xyz
*.app.wano8.xyz
*.d.wano8.xyz
wano8.xyz
*.wano8.xyz
*.ww25.wano8.xyz
*.www.wano8.xyz
yaoichan69.com
*.yaoichan69.com
*.blog.yfeditor.com
yfeditor.com
*.yfeditor.com
Other domains in certificate