hogum
caritas.it

caritas.it security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

81risk

Critical

Exposed services or known CVEs need attention now.

0Critical
6High
8Medium
7Low
2Info
Collected 41.6sfrom cache
  1. Certificate Transparency46
  2. DNS resolution23
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs20
  6. Registration
  7. DNS posture5
  8. Email authentication1
  9. Certificate
  10. Security headers0
  11. Archived URLs
  12. Analysis23
  • noteFound 46 hostnames; this runtime allows 50 outbound requests per scan, so the 21 most likely to matter were resolved.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
  • noteNo registration data: RDAP has no record at this level.
final https://www.caritas.it/status 200time 16819msstack cloudflare · WordPress 6.5.7
  • http:// redirects to https://port 80 did not answer
  • Strict-Transport-Security
  • Content-Security-Policy
  • Clickjacking protection
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policyoptional
  • security.txt publishedoptional — tells researchers where to report bugs
  • Receives mail via 1 server
  • SPFends in -all
    v=spf1 mx a include:spf.protection.outlook.com include:_spf.glauco.it -all
  • DMARC
    no record
  • !MTA-STSinbound mail can be downgraded to plaintext
AddressPortsCVEsEdgeNetwork
97.107.135.178
258044310256
2direct
170.187.131.209
2580443
2direct
185.3.93.228
2580443
2direct
185.127.236.30
80443
0direct
185.127.236.22
80443
0direct
15.161.0.15
80443
2direct
176.32.63.164
80443
0direct
15.161.171.161
80443
4direct
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.