76/100 SECURITY SCORE

Certificate Information

Subject
CN=itacademycourses.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026 68 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D5:EA:F6:AE:35:3B:F6:4B:7E:07:13:83:5F:C5:3F:CB:05:A2:91:F9:E3:D9:FC:46:5F:A1:75:D3:47:E3:36:0F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
latihanplay.com *.latihanplay.com *.admin.latihanplay.com *.api.latihanplay.com *.app.latihanplay.com *.uat.latihanplay.com

Other domains in certificate

22t5.xyz *.22t5.xyz
859326.cc *.859326.cc
879236.cc *.879236.cc
891a22.vip *.891a22.vip
89200.one *.89200.one
89552.blog *.89552.blog
9horses2.com *.9horses2.com
afflednest.win *.afflednest.win
aistout.com *.aistout.com
alva.one *.alva.one
*.atic.cybe.club cybe.club *.cybe.club *.hostmaster.cybe.club
guideforbloggers.com *.guideforbloggers.com *.www.guideforbloggers.com
gymnearme.biz *.gymnearme.biz
gymsnearme.biz *.gymsnearme.biz
healthyrscout.com *.healthyrscout.com
*.crm.holisticintent.com holisticintent.com *.holisticintent.com
iconicadvertisingboost.co *.iconicadvertisingboost.co
*.backend.itacademycourses.com *.checkout.itacademycourses.com itacademycourses.com *.itacademycourses.com *.ww12.itacademycourses.com *.ww7.itacademycourses.com
jbxzna.loan *.jbxzna.loan
jeddah-cruise.sbs *.jeddah-cruise.sbs
jobnearme.biz *.jobnearme.biz
jobsdish-washing-jobsworkers-needed332.sbs *.jobsdish-washing-jobsworkers-needed332.sbs
jobsfor-for-restaurants-jobs-over344.sbs *.jobsfor-for-restaurants-jobs-over344.sbs
jobsrestaurant-for-workers-needed4455.sbs *.jobsrestaurant-for-workers-needed4455.sbs
jobsrestaurantsjob-offer-workers-needed333.sbs *.jobsrestaurantsjob-offer-workers-needed333.sbs
jobsworks-restaurants-offered-restaurants333.sbs *.jobsworks-restaurants-offered-restaurants333.sbs
laamour.ru *.laamour.ru
letsgettropical.com *.letsgettropical.com
*.analyze.ligastirilor.com ligastirilor.com *.ligastirilor.com
lmc.app *.lmc.app
*.imap.ortografiafacil.com ortografiafacil.com *.ortografiafacil.com
pathwayprofessors.xyz *.pathwayprofessors.xyz
poligostar.com *.poligostar.com
prema.click *.prema.click
pusatkaoscouple.com *.pusatkaoscouple.com
qyswkj.cn *.qyswkj.cn
robertdomanko.com *.robertdomanko.com