Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=webparty.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 20, 2026
Valid Until
May 21, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
05:02:EC:FB:BA:96:EE:32:C1:68:71:43:5E:BC:B6:2A:C0:14:C2:51:23:5C:5B:71:29:86:AB:C4:E3:8C:3F:C0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
webparty.it
*.webparty.it
*.random.webparty.it
alysse.com
*.alysse.com
*.help.alysse.com
*.owbgrremote.alysse.com
*.test45.alysse.com
blondina.com
*.blondina.com
*.m.blondina.com
bqg567.com
*.bqg567.com
*.m.bqg567.com
*.ww25.bqg567.com
*.www.bqg567.com
*.8joac.careersuccesstrack.xyz
careersuccesstrack.xyz
*.careersuccesstrack.xyz
*.dwij7.careersuccesstrack.xyz
*.osc36.careersuccesstrack.xyz
*.v3ywp.careersuccesstrack.xyz
dcleor.com
*.dcleor.com
*.cliente.fruitjuiced.com
fruitjuiced.com
*.fruitjuiced.com
*.hostmaster.fruitjuiced.com
*.m.fruitjuiced.com
*.storage.fruitjuiced.com
*.ww1.fruitjuiced.com
*.ww16.fruitjuiced.com
*.ww17.fruitjuiced.com
*.ww25.fruitjuiced.com
*.ww38.fruitjuiced.com
*.admin.myclubwyndahm.com
*.analytic.myclubwyndahm.com
*.api.myclubwyndahm.com
*.app.myclubwyndahm.com
*.argo.myclubwyndahm.com
*.bi.myclubwyndahm.com
*.blog.myclubwyndahm.com
*.dashboards.myclubwyndahm.com
*.data.myclubwyndahm.com
*.dev.myclubwyndahm.com
*.git.myclubwyndahm.com
*.home.myclubwyndahm.com
*.hostmaster.myclubwyndahm.com
*.integration.myclubwyndahm.com
*.lara.myclubwyndahm.com
*.m.myclubwyndahm.com
*.mobile.myclubwyndahm.com
myclubwyndahm.com
*.myclubwyndahm.com
*.nijkmblog.myclubwyndahm.com
*.notexistsapi.myclubwyndahm.com
*.notexistsapp.myclubwyndahm.com
*.notexistsintranet.myclubwyndahm.com
*.notexistsshop.myclubwyndahm.com
*.notexistssystem.myclubwyndahm.com
*.portal.myclubwyndahm.com
*.stats.myclubwyndahm.com
*.store.myclubwyndahm.com
*.supersets.myclubwyndahm.com
*.system.myclubwyndahm.com
*.visual.myclubwyndahm.com
*.wap.myclubwyndahm.com
*.web.myclubwyndahm.com
*.workflow.myclubwyndahm.com
*.www.myclubwyndahm.com
*.hostmaster.omegfi.com
*.mx7.omegfi.com
*.ns1.omegfi.com
*.ns2.omegfi.com
omegfi.com
*.omegfi.com
*.random.omegfi.com
*.ww25.omegfi.com
*.ww38.omegfi.com
*.account.traktorenwelt.ch
*.bi.traktorenwelt.ch
*.dashboard.traktorenwelt.ch
*.insight.traktorenwelt.ch
*.intranet.traktorenwelt.ch
*.monitoring.traktorenwelt.ch
*.staging-analytic.traktorenwelt.ch
*.superset.traktorenwelt.ch
traktorenwelt.ch
*.traktorenwelt.ch
Other domains in certificate