Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=newchapter.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C9:87:8C:F1:99:19:64:19:09:0E:06:1C:79:78:15:3E:75:1A:56:24:18:9C:3D:E0:47:35:4F:0A:CA:DE:10:31
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
upgames.co
*.upgames.co
newchapter.it
*.newchapter.it
newgadgets.it
*.newgadgets.it
scrappway.com
*.scrappway.com
seawoods.info
*.seawoods.info
serendipitybooksstore.xyz
*.serendipitybooksstore.xyz
sgemzvking.top
*.sgemzvking.top
simpson-judge-recruitment.net
*.simpson-judge-recruitment.net
simpsonjudgerecruiters.net
*.simpsonjudgerecruiters.net
southcarolinahauling.com
*.southcarolinahauling.com
squire.it
*.squire.it
ssss88.cc
*.ssss88.cc
startupsacademy.com
*.startupsacademy.com
strongerchildren.org
*.strongerchildren.org
tacowallet.com
*.tacowallet.com
tacticiansleague.com
*.tacticiansleague.com
tadenfood.com
*.tadenfood.com
tampabay.it
*.tampabay.it
theoutboundemal.top
*.theoutboundemal.top
theultra.it
*.theultra.it
tktzt.loan
*.tktzt.loan
tonsashaagri.com
*.tonsashaagri.com
tooth-braces-me-zuzy.click
*.tooth-braces-me-zuzy.click
tournamentofpower.it
*.tournamentofpower.it
travelworldwide.live
*.travelworldwide.live
try-gluco6.com
*.try-gluco6.com
twentynine.it
*.twentynine.it
ucanindia.in
*.ucanindia.in
ultimatebackgroundchecksteam.com
*.ultimatebackgroundchecksteam.com
undigged.com
*.undigged.com
uuu6727.top
*.uuu6727.top
uwb.it
*.uwb.it
v9bet.ag
*.v9bet.ag
vacanzetuttolanno.it
*.vacanzetuttolanno.it
versicrom.com
*.versicrom.com
vinalgarma.com
*.vinalgarma.com
vns089.cc
*.vns089.cc
vwbbl.net
*.vwbbl.net
waseraroniiolealessnow.shop
*.waseraroniiolealessnow.shop
wbx26.top
*.wbx26.top
weddingsunderstars.beauty
*.weddingsunderstars.beauty
winline-casino.link
*.winline-casino.link
wm3j7b.shop
*.wm3j7b.shop
Other domains in certificate