76/100 SECURITY SCORE

Certificate Information

Subject
CN=ittable.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 15, 2026
Valid Until
August 13, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:F7:13:62:77:65:39:11:E3:06:7B:3A:6B:A3:4B:C7:89:94:EA:1D:72:84:92:3C:30:F5:59:DE:80:2E:DF:61
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

91 domains
braidbloom.shop *.braidbloom.shop

Other domains in certificate

03301.co *.03301.co
25031.co *.25031.co
26219241.vip *.26219241.vip
833803doa3.sbs *.833803doa3.sbs
bounceballaztec.com *.bounceballaztec.com
cinasipit.vip *.cinasipit.vip
clickmarina.com *.clickmarina.com
dealcentre.com.au *.dealcentre.com.au
denemebonusu-casino.com *.denemebonusu-casino.com
educationlistshub.com *.educationlistshub.com
empathydeficit.org *.empathydeficit.org *.iuincvbahcbbs.empathydeficit.org
fallonsimard.com *.fallonsimard.com
flower-processing-jobs-db.click *.flower-processing-jobs-db.click
fpc3cv.top *.fpc3cv.top
ittable.com *.ittable.com
lemmahorizons.com *.lemmahorizons.com
limpo777.com *.limpo777.com
maju57max.xyz *.maju57max.xyz
mf73g.cc *.mf73g.cc
msph5-02.com *.msph5-02.com
nepot.xyz *.nepot.xyz
omcpet.store *.omcpet.store
pageseller.com *.pageseller.com
patioshouston.com *.patioshouston.com
patternselect.com *.patternselect.com
pollerr.com *.pollerr.com
pourandpass.com *.pourandpass.com
privon.cfd *.privon.cfd
purij.cn *.purij.cn
pwco.co *.pwco.co
ronnichain.com *.ronnichain.com
samakhabar.com *.samakhabar.com
sanfranciscomugshots.com *.sanfranciscomugshots.com
stellar-quantumflare.xyz *.stellar-quantumflare.xyz
storisponsor.cfd *.storisponsor.cfd
thefirstledger.net *.thefirstledger.net
vavadaj37.site *.vavadaj37.site
visa-hongkong.com *.visa-hongkong.com
vizicoshippingagency.com *.vizicoshippingagency.com
wf91.cc *.wf91.cc
winwithsaluscm.company *.winwithsaluscm.company
xn--hwtu6nuuzhot.com *.xn--hwtu6nuuzhot.com
xn--tc5a.com *.xn--tc5a.com
yan16888.xyz *.yan16888.xyz