Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=lklotto.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 13, 2026
Valid Until
August 11, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
91:37:CD:89:5A:31:32:C8:15:70:06:FA:2C:02:D9:83:F8:02:CE:F0:AD:E9:DA:74:10:48:DF:EA:26:94:50:78
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
lklotto.com *.lklotto.com *.31893d71-e649-4960-a082-87de3cf60129.lklotto.com *.admin.lklotto.com *.app.lklotto.com *.assets.lklotto.com *.bbs.lklotto.com *.dashboard.lklotto.com *.demo.lklotto.com *.k7uakd.lklotto.com *.m.lklotto.com *.mail.lklotto.com *.mailer.lklotto.com *.members.lklotto.com *.phrmuv1.lklotto.com *.v1.lklotto.com *.www.lklotto.com

Other domains in certificate

affordablesidingcompany.com *.affordablesidingcompany.com *.assets.affordablesidingcompany.com *.autodiscover.affordablesidingcompany.com *.blog.affordablesidingcompany.com *.ccutqlka.affordablesidingcompany.com *.citrix.affordablesidingcompany.com *.crm.affordablesidingcompany.com *.email.affordablesidingcompany.com *.ftp.affordablesidingcompany.com *.lime.affordablesidingcompany.com *.m.affordablesidingcompany.com *.mail.affordablesidingcompany.com *.member.affordablesidingcompany.com *.members.affordablesidingcompany.com *.mta-sts.affordablesidingcompany.com *.outlook.affordablesidingcompany.com *.shop.affordablesidingcompany.com *.smtp.affordablesidingcompany.com *.vpn.affordablesidingcompany.com
alfaparf.club *.alfaparf.club
*.analytic-integration.dontorrent.click *.analytic.dontorrent.click *.analytics-qa.dontorrent.click *.analytics.dontorrent.click *.api.dontorrent.click *.app.dontorrent.click *.beta-data.dontorrent.click *.bi.dontorrent.click *.ci.dontorrent.click *.dashboard-hotfix.dontorrent.click *.dashboard.dontorrent.click *.data.dontorrent.click *.demo.dontorrent.click *.dev.dontorrent.click dontorrent.click *.dontorrent.click *.home.dontorrent.click *.insight-sandbox.dontorrent.click *.insight-uat.dontorrent.click *.insight.dontorrent.click *.integration.dontorrent.click *.kafka.dontorrent.click *.kttcqsitemap.dontorrent.click *.mobile.dontorrent.click *.n.dontorrent.click *.news.dontorrent.click *.preprod-analytics.dontorrent.click *.prod.dontorrent.click *.production.dontorrent.click *.qa.dontorrent.click *.staging.dontorrent.click *.superset.dontorrent.click *.web.dontorrent.click *.wildcard.dontorrent.click *.ww25.dontorrent.click *.www.dontorrent.click
emojiscombo.com *.emojiscombo.com *.random.emojiscombo.com *.ww16.emojiscombo.com *.ww25.emojiscombo.com *.ww38.emojiscombo.com
onbitx.com *.onbitx.com *.ww38.onbitx.com
publicdatacheck.co *.publicdatacheck.co *.ww38.publicdatacheck.co
*.smtp.visualroll.com visualroll.com *.visualroll.com