Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=talkit.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DB:97:B2:30:C4:64:F4:D2:F7:81:81:29:A8:86:19:2D:F9:4C:9C:B3:D5:CF:C5:04:60:9F:AD:70:40:B6:70:10
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
atvauctions.com
*.atvauctions.com
15880.co
*.15880.co
58398.co
*.58398.co
*.2b3073cd-1231-46a8-8f93-a0e16dfd3880.5dollartrafficschool.co
5dollartrafficschool.co
*.5dollartrafficschool.co
*.login.5dollartrafficschool.co
*.portal.5dollartrafficschool.co
*.share.5dollartrafficschool.co
*.sitemap.5dollartrafficschool.co
67081.co
*.67081.co
76yx.cc
*.76yx.cc
*.960f4ea5-ff7f-48f0-b137-9fcbd9187569.adjudicateapi.com
adjudicateapi.com
*.adjudicateapi.com
*.backup.adjudicateapi.com
*.dev.adjudicateapi.com
*.ewk33d.adjudicateapi.com
*.staging.adjudicateapi.com
*.uat.adjudicateapi.com
*.assets.configurable.info
*.blog.configurable.info
configurable.info
*.configurable.info
*.shop.configurable.info
coziest.baby
*.coziest.baby
elpasojuarez.com
*.elpasojuarez.com
jonathan-groff.net
*.jonathan-groff.net
limbr.co
*.limbr.co
medseasy365.pics
*.medseasy365.pics
mochillzone.com
*.mochillzone.com
outlet.baby
*.outlet.baby
play-osiris.com
*.play-osiris.com
purplecat.co
*.purplecat.co
studiofoksart.com
*.studiofoksart.com
talkit.co
*.talkit.co
*.www.talkit.co
uniton.co
*.uniton.co
vidaa.qpon
*.vidaa.qpon
viriato.co
*.viriato.co
virtaxi.com
*.virtaxi.com
weblytics.co
*.weblytics.co
wingame.app
*.wingame.app
*.app.wishpro.co
*.happynewyear.wishpro.co
wishpro.co
*.wishpro.co
worldexan.com
*.worldexan.com
wwwyh0039.com
*.wwwyh0039.com
xawym.one
*.xawym.one
xn--chrstmas-cjb.me
*.xn--chrstmas-cjb.me
xn--pzza-qya.me
*.xn--pzza-qya.me
*.app.xn--sftware-5lb.cafe
*.dev.xn--sftware-5lb.cafe
xn--sftware-5lb.cafe
*.xn--sftware-5lb.cafe
*.y42vtf.xn--sftware-5lb.cafe
xzdm.cc
*.xzdm.cc
y39g.icu
*.y39g.icu
y8fl6t7.cc
*.y8fl6t7.cc
Other domains in certificate