Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=knitbycurver.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 21, 2026
Valid Until
August 19, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:2B:58:E2:F1:84:E7:6F:2D:45:FD:98:71:1E:77:12:53:84:96:F3:B1:19:75:12:BD:C8:91:48:11:6E:49:D5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
mortrans.info
*.mortrans.info
*.806b3f91af57.mortrans.info
*.a.mortrans.info
*.pjhiqoqaursitemap.mortrans.info
*.sitemap.mortrans.info
*.www.mortrans.info
chat-ogt.com
*.chat-ogt.com
*.vpn.chat-ogt.com
*.www.chat-ogt.com
*.app.chatlivecam.it
chatlivecam.it
*.chatlivecam.it
*.staging.chatlivecam.it
comment.re
*.comment.re
*.sacredcow.comment.re
confidencepartnershub.com
*.confidencepartnershub.com
elliesapplepie.com
*.elliesapplepie.com
*.admin.freshwap.org
*.downarchive1.freshwap.org
*.ezdown1.freshwap.org
*.freedl1.freshwap.org
freshwap.org
*.freshwap.org
*.server.freshwap.org
*.webdisk.freshwap.org
*.ww2.freshwap.org
*.ww4.freshwap.org
*.www.freshwap.org
indiarocks.in
*.indiarocks.in
*.www.indiarocks.in
*.info.knitbycurver.com
knitbycurver.com
*.knitbycurver.com
*.random.knitbycurver.com
*.tic.knitbycurver.com
*.translate.knitbycurver.com
*.vpn.knitbycurver.com
*.webdisk.knitbycurver.com
*.ww16.knitbycurver.com
*.ww25.knitbycurver.com
*.ww38.knitbycurver.com
*.99.kraftmagnetischvorteil.com
*.dash.kraftmagnetischvorteil.com
*.db.kraftmagnetischvorteil.com
*.db5.kraftmagnetischvorteil.com
*.jenkins.kraftmagnetischvorteil.com
kraftmagnetischvorteil.com
*.kraftmagnetischvorteil.com
*.mta-sts.kraftmagnetischvorteil.com
*.sitemap.kraftmagnetischvorteil.com
*.sitemaps.kraftmagnetischvorteil.com
*.ww1.kraftmagnetischvorteil.com
*.ww12.kraftmagnetischvorteil.com
*.ww7.kraftmagnetischvorteil.com
*.ww99.kraftmagnetischvorteil.com
*.www.kraftmagnetischvorteil.com
*.api.oceanshospital.org
*.app.oceanshospital.org
*.demo.oceanshospital.org
*.dev.oceanshospital.org
oceanshospital.org
*.oceanshospital.org
*.www.oceanshospital.org
*.ads.smart-school.online
*.allsouls.smart-school.online
*.autodiscover.smart-school.online
*.codebootcamp.smart-school.online
*.codecamp.smart-school.online
*.cpanel.smart-school.online
*.exams.smart-school.online
*.grindas.smart-school.online
*.mail.smart-school.online
smart-school.online
*.smart-school.online
*.smartnews.smart-school.online
*.webdisk.smart-school.online
*.webmail.smart-school.online
spire-hawk.buzz
*.spire-hawk.buzz
*.www.spire-hawk.buzz
*.xytpl0.spire-hawk.buzz
wwwddz3.vip
*.wwwddz3.vip
Other domains in certificate