Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bountybite.food
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 03, 2026
Valid Until
September 01, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
35:76:9A:8C:CD:90:23:89:A8:56:70:7D:13:2E:DB:C6:DF:6D:C0:54:0C:0F:9D:E0:E7:CF:17:D8:0C:76:98:D2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
embusec.com
*.embusec.com
bicyclehandlebars.com
*.bicyclehandlebars.com
bountybite.food
*.bountybite.food
caddyauctions.com
*.caddyauctions.com
e5j4y2.top
*.e5j4y2.top
emergencypsychiatricservice.com
*.emergencypsychiatricservice.com
emissaoesbr.club
*.emissaoesbr.club
emissaoesbr.vip
*.emissaoesbr.vip
emissaoesbrservicos.my
*.emissaoesbrservicos.my
emissaopassaportes.vip
*.emissaopassaportes.vip
emissaoservicos.info
*.emissaoservicos.info
emissaoservicos.my
*.emissaoservicos.my
emperordong.pics
*.emperordong.pics
espaciofm.com
*.espaciofm.com
etasama.com
*.etasama.com
fitness-equipment-district-649.sbs
*.fitness-equipment-district-649.sbs
fitnesscaliber.run
*.fitnesscaliber.run
fitnesscovenantplan.run
*.fitnesscovenantplan.run
fitnessfactornexus.run
*.fitnessfactornexus.run
fitnessgenesisgateway.run
*.fitnessgenesisgateway.run
fitnessintegrityfirst.run
*.fitnessintegrityfirst.run
fitnessoptimumzone.run
*.fitnessoptimumzone.run
fitnessquestelite.run
*.fitnessquestelite.run
fitnesssynthesispro.run
*.fitnesssynthesispro.run
fitsavvypro.run
*.fitsavvypro.run
fkxbx.loan
*.fkxbx.loan
flat-belly-de.sbs
*.flat-belly-de.sbs
flavorfaith.food
*.flavorfaith.food
flavorfoundry.food
*.flavorfoundry.food
flavorsfulfilled.food
*.flavorsfulfilled.food
flbousyzekrjovz.my
*.flbousyzekrjovz.my
flickoffersnetflix.com
*.flickoffersnetflix.com
foodsummitinsight.food
*.foodsummitinsight.food
france-et-jeux.com
*.france-et-jeux.com
fuediw.top
*.fuediw.top
fuelfitnessnj.com
*.fuelfitnessnj.com
fulfillfoodfocus.food
*.fulfillfoodfocus.food
gha.in
*.gha.in
gym-001.sbs
*.gym-001.sbs
ivf-treatment-costing.sbs
*.ivf-treatment-costing.sbs
schlafwandel.com
*.schlafwandel.com
sergeev.store
*.sergeev.store
setupmyaccount.com
*.setupmyaccount.com
villadungeon.com
*.villadungeon.com
zaheerbhattis.com
*.zaheerbhattis.com
Other domains in certificate