Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fitnessprogressive.club
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
44:98:F5:7F:51:BB:15:D3:23:3F:3D:0F:21:AA:27:EA:D3:E9:BA:07:74:07:66:9E:0C:6B:61:79:0C:7C:AF:40
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
agentic.menu
*.agentic.menu
12500.one
*.12500.one
17186.one
*.17186.one
18955.one
*.18955.one
18959.one
*.18959.one
19382.one
*.19382.one
21395.one
*.21395.one
21760.one
*.21760.one
25692.my
*.25692.my
28634.one
*.28634.one
29706.one
*.29706.one
30299.one
*.30299.one
50147.pro
*.50147.pro
64687.cc
*.64687.cc
66837.mobi
*.66837.mobi
8258603.vip
*.8258603.vip
82967.my
*.82967.my
891456.xyz
*.891456.xyz
alrajhitakaful.co
*.alrajhitakaful.co
bktrax.co
*.bktrax.co
borndofshadows.co
*.borndofshadows.co
break-the-room-game.click
*.break-the-room-game.click
czechstreets.co
*.czechstreets.co
defont.co
*.defont.co
dgkkkk.loan
*.dgkkkk.loan
ecozina.com
*.ecozina.com
elite-ad-consulting.us
*.elite-ad-consulting.us
fedgex.net
*.fedgex.net
fitnessprogressive.club
*.fitnessprogressive.club
fmvovies.co
*.fmvovies.co
galaxyplanner.co
*.galaxyplanner.co
getpica.co
*.getpica.co
getpierced.co
*.getpierced.co
girlswithslingshots.co
*.girlswithslingshots.co
givemenbastreams.co
*.givemenbastreams.co
gsj.monster
*.gsj.monster
heidicql.com
*.heidicql.com
kidsaferegistry.com
*.kidsaferegistry.com
kv88.in
*.kv88.in
kytebaby.co
*.kytebaby.co
londondreams.co
*.londondreams.co
miniaturemarket.co
*.miniaturemarket.co
newbal.co
*.newbal.co
occupationaloutlookhandbook.com
*.occupationaloutlookhandbook.com
phoneprivacy.co
*.phoneprivacy.co
Other domains in certificate