Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=marketkita.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 13, 2026
Valid Until
July 12, 2026
50 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
90:DC:0D:83:58:28:6E:88:2D:E0:7D:F3:D6:52:BE:18:D4:E4:10:D7:6F:75:8D:EC:22:2C:3C:DC:44:B9:D3:8B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
monsim.com
*.monsim.com
imaginationstudios.com
*.imaginationstudios.com
imaginearthq.com
*.imaginearthq.com
infinitydesignstudio.com
*.infinitydesignstudio.com
insightnursing.com
*.insightnursing.com
insta-anonimo.com
*.insta-anonimo.com
interior-mirror-wall-design-with-custom-glass-cutting.sbs
*.interior-mirror-wall-design-with-custom-glass-cutting.sbs
iq-health-05462742.sbs
*.iq-health-05462742.sbs
irwinindustries.com
*.irwinindustries.com
jawfix.com
*.jawfix.com
jayzo.com
*.jayzo.com
jointeamhiredhub.com
*.jointeamhiredhub.com
jtv.gr
*.jtv.gr
learngrowdevelop.com
*.learngrowdevelop.com
lgolive87.org
*.lgolive87.org
lifetimepatios.com
*.lifetimepatios.com
lmplc.com
*.lmplc.com
lojadeoferta.com
*.lojadeoferta.com
lopezpantoja.investments
*.lopezpantoja.investments
lrmqj.today
*.lrmqj.today
luxquartz.com
*.luxquartz.com
m-writes.com
*.m-writes.com
machab.com
*.machab.com
madisonize.com
*.madisonize.com
marketkita.com
*.marketkita.com
mateusmais.com
*.mateusmais.com
matthew633.com
*.matthew633.com
megarez.com
*.megarez.com
memesadda.com
*.memesadda.com
mhztb.sbs
*.mhztb.sbs
miktik.com
*.miktik.com
milanmatka.com
*.milanmatka.com
montamax.com
*.montamax.com
monthly-car-rental-us64-dp.click
*.monthly-car-rental-us64-dp.click
nearnews.com
*.nearnews.com
nelsoncienfuegos.training
*.nelsoncienfuegos.training
newsaura.com
*.newsaura.com
shlinlin.com
*.shlinlin.com
shoofer.com
*.shoofer.com
wheretech.com
*.wheretech.com
whodoyouwanttobe.com
*.whodoyouwanttobe.com
woodwurk.info
*.woodwurk.info
xinjie333.cn
*.xinjie333.cn
xsonora.com
*.xsonora.com
zisign.com
*.zisign.com
Other domains in certificate