Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=trapstitch.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
50:B5:5A:38:A2:07:8C:DF:5A:4E:27:AE:19:05:92:6A:CC:EB:CB:C1:1F:01:CF:54:BF:47:43:D9:84:00:0F:6E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
sulfate.free
*.sulfate.free
*.harmoer.sulfate.free
brighttravelguidance.xyz
*.brighttravelguidance.xyz
brytehall.com
*.brytehall.com
car-ind-012.sbs
*.car-ind-012.sbs
careerwaystowin.xyz
*.careerwaystowin.xyz
coporaterefugee.co
*.coporaterefugee.co
cozychain.com
*.cozychain.com
dctugvrrzn.xyz
*.dctugvrrzn.xyz
radiantwin144.top
*.radiantwin144.top
raisright.com
*.raisright.com
readytel.com
*.readytel.com
realestatesniper.com
*.realestatesniper.com
reprocessedcars.sbs
*.reprocessedcars.sbs
residenciaulpgc.com
*.residenciaulpgc.com
richmondmechanic.com
*.richmondmechanic.com
*.lc.risingwithjoy.club
risingwithjoy.club
*.risingwithjoy.club
samialquran.com
*.samialquran.com
sanantonio.one
*.sanantonio.one
select-7.us
*.select-7.us
spotibown.co
*.spotibown.co
stevenssteakhouse.co
*.stevenssteakhouse.co
swipeitnow.com
*.swipeitnow.com
synergytravelsolutions.xyz
*.synergytravelsolutions.xyz
tatavufiji.co
*.tatavufiji.co
thefoodoutlet.com
*.thefoodoutlet.com
thesecrethervice.com
*.thesecrethervice.com
timelapsemagazine.co
*.timelapsemagazine.co
towstix.com
*.towstix.com
tranquiltillage.xyz
*.tranquiltillage.xyz
transparentgardens.xyz
*.transparentgardens.xyz
trapstitch.co
*.trapstitch.co
travelharmonyhub.xyz
*.travelharmonyhub.xyz
travelsimplicitypros.live
*.travelsimplicitypros.live
twistedherdmercantile.co
*.twistedherdmercantile.co
uniquevacationconnection.live
*.uniquevacationconnection.live
way191.xyz
*.way191.xyz
wwwjin8666.com
*.wwwjin8666.com
*.mta-sts.wwwraiseright.com
wwwraiseright.com
*.wwwraiseright.com
xn--gmq34xhgr78f.com
*.xn--gmq34xhgr78f.com
xn--lckj0d3ctd3b.com
*.xn--lckj0d3ctd3b.com
xny7.boats
*.xny7.boats
zeqaitele-sitteraiagent.com
*.zeqaitele-sitteraiagent.com
ziyun9.fun
*.ziyun9.fun
Other domains in certificate