Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hybridmarketing.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 10, 2026
Valid Until
July 09, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:33:69:55:9A:8C:90:57:F1:AF:5A:DA:96:90:E6:15:33:89:5C:EC:0D:09:10:7E:D5:59:95:01:9E:79:32:43
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
62 domains
supportsaks.com
*.supportsaks.com
*.random.supportsaks.com
*.ww25.supportsaks.com
*.ww38.supportsaks.com
amethysts.tech
*.amethysts.tech
boroll.com
*.boroll.com
*.az.brandonmartinforcongress.com
brandonmartinforcongress.com
*.brandonmartinforcongress.com
*.com.brandonmartinforcongress.com
*.random.brandonmartinforcongress.com
*.test1776.brandonmartinforcongress.com
cvshealthsurvey.care
*.cvshealthsurvey.care
dunnrightinsp.com
*.dunnrightinsp.com
eneron-tv.com
*.eneron-tv.com
*.webplayer.eneron-tv.com
hybridmarketing.co.uk
*.hybridmarketing.co.uk
justwatches.co
*.justwatches.co
*.ww25.justwatches.co
*.ww38.justwatches.co
*.www.justwatches.co
mertra.com.au
*.mertra.com.au
*.ww16.mertra.com.au
*.ww25.mertra.com.au
*.ww38.mertra.com.au
pagepersonelle.it
*.pagepersonelle.it
*.random.pagepersonelle.it
*.hostmaster.pikon.online
pikon.online
*.pikon.online
*.xfplfww38.pikon.online
pkzone.org
*.pkzone.org
*.sys.pkzone.org
*.dev.planeths.org
*.magento.planeths.org
planeths.org
*.planeths.org
*.store.planeths.org
*.test.planeths.org
posoutlets.com
*.posoutlets.com
samureischwert.de
*.samureischwert.de
securethew.com
*.securethew.com
simasfarmacia.com
*.simasfarmacia.com
skyline.fan
*.skyline.fan
soundtherapysantafe.com
*.soundtherapysantafe.com
Other domains in certificate