Open
Cached
·
just now
89/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
C=US, ST=California, O=Apple Inc., CN=itunesu.com
Issuer
C=US, O=Apple Inc., CN=Apple Public Server RSA CA 1 - G1
Valid From
February 13, 2026
Valid Until
May 14, 2026
41 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:59:24:55:1E:5E:7A:A5:F7:6E:37:C2:02:D9:B2:70:EB:01:73:83:4A:94:89:AB:93:91:3F:B1:3F:A0:41:9F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000; includeSubdomains; preload
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Not Authorized
(Potential misconfiguration)
Authorized CAs
Wildcard CAs
Incident Reporting
mailto:[email protected]
CAA Issues
- • CRITICAL: Current certificate issuer 'C=US, O=Apple Inc., CN=Apple Public Server RSA CA 1 - G1' is NOT authorized by CAA records. Authorized CAs: pki.apple.com
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
Subject Alternative Names
57 domains
macintoshsoftware.com
www.macintoshsoftware.com
itunesu.com
www.itunesu.com
itunesuniversity.com
www.itunesuniversity.com
iwork.com
www.iwork.com
jetfuelapp.com
www.jetfuelapp.com
jetfuelapps.com
www.jetfuelapps.com
killersoftheflowermoonexhibit.com
lambdamap.com
www.lambdamap.com
laugh-lounge.com
www.laugh-lounge.com
lionserver.com
www.lionserver.com
mac.com
www.mac.com
macbookair.com
www.macbookair.com
macbookpro.com
www.macbookpro.com
macbookpros.com
www.macbookpros.com
macboxset.com
www.macboxset.com
macgestures.com
www.macgestures.com
mach-os.com
www.mach-os.com
macmini.com
www.macmini.com
macoslion.com
www.macoslion.com
macossierra.com
www.macossierra.com
macosxleo.com
www.macosxleo.com
macosxleon.com
www.macosxleon.com
macosxlion.com
www.macosxlion.com
macosxlionairdrop.com
www.macosxlionairdrop.com
macosxserver.com
www.macosxserver.com
macosxversions.com
www.macosxversions.com
macprices.com
www.macprices.com
macreach.com
www.macreach.com
magictrackpad.com
www.magictrackpad.com
Other domains in certificate