hogum
maxihost.com.br

maxihost.com.br security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

20risk

Low

Minor observations only.

0Critical
0High
1Medium
8Low
1Info
Collected 48.1sfrom cache
  1. Certificate Transparency74
  2. DNS resolution6
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs39
  6. Registration
  7. DNS posture2
  8. Email authentication2
  9. Certificate
  10. Security headers6
  11. Archived URLs
  12. Analysis10
  • noteFound 74 hostnames; this runtime allows 50 outbound requests per scan, so the 21 most likely to matter were resolved.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
  • note3 hosts were identified as CDN/edge infrastructure from ASN ownership rather than a cdncheck fingerprint.
final https://www.latitude.sh/status 200time 105msstack cloudflare
  • http:// redirects to https://
  • Strict-Transport-Security
    max-age=63072000
  • Content-Security-Policy
    frame-ancestors 'self' https://latitude.sh
  • Clickjacking protection
    SAMEORIGIN
  • X-Content-Type-Options
    nosniff
  • Referrer-Policy
    no-referrer-when-downgrade
  • Permissions-Policy
    camera=(), display-capture=(), fullscreen=*, geolocation=(), microphone=(), web-share=()
  • security.txt publishedoptional — tells researchers where to report bugs
  • Receives mail via 5 servers
  • SPFends in -all
    v=spf1 include:_spf.google.com include:stspg-customer.com include:mail.zendesk.com include:spf.mtasv.net include:latitude.sh -all
  • DMARCp=reject
    v=DMARC1; p=reject; sp=none; rua=mailto:fa18ba9510a8420c882b7c16e67c67c0@dmarc-reports.cloudflare.net,mailto:re+2b6babe9b352@inbound.dmarcdigests.com; pct=100
  • !MTA-STSinbound mail can be downgraded to plaintext
  • !DNSSECanswers can be forged
  • CAA
    0 issue ";" · 0 issue "comodoca.com" · 0 issue "digicert.com; cansignhttpexchanges=yes" · 0 issue "letsencrypt.org" · 0 issue "pki.goog; cansignhttpexchanges=yes" · 0 issue "sectigo.com" · 0 issue "ssl.com" · 0 issuewild "comodoca.com" · 0 issuewild "digicert.com; cansignhttpexchanges=yes" · 0 issuewild "letsencrypt.org" · 0 issuewild "pki.goog; cansignhttpexchanges=yes" · 0 issuewild "ssl.com"
  • IPv6 (AAAA)
  • 2 nameservers
AddressPortsCVEsEdgeNetwork
104.26.2.240
80443205220532082208320862087+5
0Cloudflare~
172.67.73.73
80443205220532082208320862087+5
0Cloudflare~
104.26.3.240
80443205220532082208320862087+5
0Cloudflare~
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.