SSL Verification Bypassed
The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.
Reason:
Hostname Mismatch - certificate is issued for abitasur.fr, admin.websiteout.net, alain-amariglio.com, alliance-international.com, buissonchardin.fr, caisse-solidarite-sport29200.fr, compteur.websiteout.com, compteur.websiteout.net, contador.websiteout.com, not for websiteout.com
Open
Cached
·
just now
68/100
SECURITY SCORE
Certificate Information
Subject
CN=www.websiteout.net
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
November 03, 2025
Valid Until
February 01, 2026
51 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
16:7E:3B:97:56:2A:BE:A9:B3:F7:F6:DB:FC:F9:0C:FD:78:3C:07:59:79:3F:23:A8:68:10:FF:26:4F:7C:C8:73
Alternative Names
Security Configuration
TLS Protocols
TLS 1.0
TLS 1.1
TLS 1.2
Forward Secrecy
Limited
(Check cipher configuration)
Warnings
- • TLS 1.3 is not supported (recommended)
- • TLS 1.1 is deprecated and should be disabled
- • TLS 1.0 is deprecated and should be disabled
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
72 domains
compteur.websiteout.com
contador.websiteout.com
counter.websiteout.com
kauntaar.websiteout.com
abitasur.fr
www.abitasur.fr
www.acodi-cergy.fr
alain-amariglio.com
www.alain-amariglio.com
alliance-international.com
www.alliance-international.com
www.amities-spirituelles.fr
www.anneduprat.fr
webmail2.arts-fx.com
buissonchardin.fr
www.buissonchardin.fr
caisse-solidarite-sport29200.fr
www.caisse-solidarite-sport29200.fr
www.campionos.com
www.dactylographie.eu
dayafterdayart.com
www.dayafterdayart.com
emmaushaiti.org
www.emmaushaiti.org
expert-accidentologie.fr
www.expert-accidentologie.fr
gaphil.com
www.gaphil.com
gitavesnois.com
www.gitavesnois.com
gites-en-aquitaine.com
www.gites-en-aquitaine.com
guineequatoriale-info.net
www.guineequatoriale-info.net
mail.w06.httpserveur.net
hullias.com
webmail.hullias.com
www.hullias.com
iris121.com
www.iris121.com
www.lessaisies-alm.net
maisons-de-vacances-france.com
www.maisons-de-vacances-france.com
www.marionnettes-spectacles-enfants.com
maustitchi.be
www.maustitchi.be
pazery-vautier.com
www.pazery-vautier.com
pianosesther.be
www.pianosesther.be
www.picpulses.com
ravin.info
www.ravin.info
relaisfleuri.info
www.relaisfleuri.info
www.rigale.be
www.sotib.com
mail.sylveos.com
webmail.sylveos.com
webmail2.sylveos.com
taichi-jade.com
www.taichi-jade.com
websiteout.ca
www.websiteout.ca
admin.websiteout.net
compteur.websiteout.net
counter.websiteout.net
myip.websiteout.net
stats.compteur.websiteout.net
stats.counter.websiteout.net
websiteout.net
www.websiteout.net
Other domains in certificate