Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=magicapps.me
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 06, 2026
Valid Until
May 07, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9E:D6:5E:0C:D9:B0:1A:1B:78:43:B8:D0:17:AC:CE:D8:50:CF:C7:7B:75:B7:39:D5:6F:24:27:37:90:1C:07:48
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
trafficthrottle.com
*.trafficthrottle.com
*.ww38.trafficthrottle.com
5minprofitpages.com
*.5minprofitpages.com
booklivemusic.com.au
*.booklivemusic.com.au
*.ww38.booklivemusic.com.au
cmprokocim.us
*.cmprokocim.us
*.ww38.cmprokocim.us
confezioni.com
*.confezioni.com
*.elda.confezioni.com
documentarysaga.info
*.documentarysaga.info
*.loomludowtf.documentarysaga.info
*.online.documentarysaga.info
drippmv.com
*.drippmv.com
ecolabels.au
*.ecolabels.au
*.comune.estrategia.es
*.dan.estrategia.es
estrategia.es
*.estrategia.es
*.mail.estrategia.es
*.mx.estrategia.es
magicapps.me
*.magicapps.me
*.ww25.magicapps.me
*.ww38.magicapps.me
*.www.magicapps.me
*.client.mosaiikki.com
*.cpanel.mosaiikki.com
*.login.mosaiikki.com
*.m.mosaiikki.com
mosaiikki.com
*.mosaiikki.com
*.office.mosaiikki.com
*.portal.mosaiikki.com
*.remoteaccess.mosaiikki.com
*.secureaccess.mosaiikki.com
*.sitemaps.mosaiikki.com
*.vpn.mosaiikki.com
*.vpn2.mosaiikki.com
*.webmail.mosaiikki.com
*.ww1.mosaiikki.com
pepecoins.website
*.pepecoins.website
*.arcadia.peptalk.site
*.future.peptalk.site
*.mail.peptalk.site
*.members.peptalk.site
peptalk.site
*.peptalk.site
*.www1.peptalk.site
*.d.piccsoftware.top
piccsoftware.top
*.piccsoftware.top
*.www.piccsoftware.top
*.dashboards.qeg.it
*.imap.qeg.it
qeg.it
*.qeg.it
rainbowparties.com
*.rainbowparties.com
*.random.rainbowparties.com
*.vpn.rainbowparties.com
*.rus.rusemb.sk
rusemb.sk
*.rusemb.sk
*.vww.rusemb.sk
seekscience.org
*.seekscience.org
serial-kombi.be
*.serial-kombi.be
visastreet.co.uk
*.visastreet.co.uk
*.ww1.visastreet.co.uk
*.ww38.visastreet.co.uk
vodkapkr.co
*.vodkapkr.co
wr.net.au
*.wr.net.au
*.docs.wrappedplatform.com
wrappedplatform.com
*.wrappedplatform.com
zukrass.biz
*.zukrass.biz
Other domains in certificate