76/100 SECURITY SCORE

Certificate Information

Subject
CN=kdn.com.pl
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 20, 2026
Valid Until
August 18, 2026 85 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
60:F1:CF:16:2D:35:55:5E:0E:26:FF:53:00:4D:74:E2:B6:27:53:9B:50:27:2E:89:EC:65:16:D6:C3:4A:09:7C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
plumbersfrederick.info *.plumbersfrederick.info *.38fa5632-7e13-4d34-84f0-6a84de067fa7.plumbersfrederick.info *.3e6b8f26-9f52-4325-aadb-b57bb2bdd8e0.plumbersfrederick.info *.9a5170bc-37de-49e0-bfdc-db259d471708.plumbersfrederick.info *.9p77nx.plumbersfrederick.info *.a.plumbersfrederick.info *.app.plumbersfrederick.info *.assets.plumbersfrederick.info *.cfxxbassets.plumbersfrederick.info *.dev.plumbersfrederick.info *.mail.plumbersfrederick.info *.webmail.plumbersfrederick.info *.www.plumbersfrederick.info *.xzzcx9p77nx.plumbersfrederick.info

Other domains in certificate

*.app.creativepaintwork.click *.autoconfig.creativepaintwork.click *.cdn.creativepaintwork.click *.cms.creativepaintwork.click *.cpanel.creativepaintwork.click creativepaintwork.click *.creativepaintwork.click *.demo.creativepaintwork.click *.development.creativepaintwork.click *.docs.creativepaintwork.click *.game.creativepaintwork.click *.hostmaster.creativepaintwork.click *.info.creativepaintwork.click *.ipv6.creativepaintwork.click *.local.creativepaintwork.click *.mailx.creativepaintwork.click *.media.creativepaintwork.click *.mx.creativepaintwork.click *.mx0.creativepaintwork.click *.owa.creativepaintwork.click *.pop3.creativepaintwork.click *.srv.creativepaintwork.click *.store.creativepaintwork.click *.wap.creativepaintwork.click *.webdisk.creativepaintwork.click *.webmail.creativepaintwork.click *.ww38.creativepaintwork.click
*.0hux.jylcfc.cn *.34j5g.jylcfc.cn *.actor.jylcfc.cn *.b4gmz.jylcfc.cn *.better.jylcfc.cn *.effpz.jylcfc.cn *.ffpz.jylcfc.cn *.fgdoxgoose.jylcfc.cn *.gao.jylcfc.cn *.healthy.jylcfc.cn *.jie.jylcfc.cn jylcfc.cn *.jylcfc.cn *.kozpm.jylcfc.cn *.m.jylcfc.cn *.motor.jylcfc.cn *.nai.jylcfc.cn *.p.jylcfc.cn *.qjdfg1.jylcfc.cn *.random.jylcfc.cn *.shorter.jylcfc.cn *.sweep.jylcfc.cn *.syi25bt.jylcfc.cn *.weekend.jylcfc.cn *.wuofe.jylcfc.cn *.wwww.jylcfc.cn *.y1az9k26.jylcfc.cn *.yi25bt.jylcfc.cn
kdn.com.pl *.kdn.com.pl
*.02a04c45-6b7a-4256-9809-f5ce13bb7868.toto2871.vip *.1b21dba0-abe7-48e5-b4bc-075807199707.toto2871.vip *.admin.toto2871.vip *.api.toto2871.vip *.app.toto2871.vip *.assets.toto2871.vip *.c737b9f3-01bc-41c3-868e-1aedd5fd088b.toto2871.vip *.demo.toto2871.vip *.dev.toto2871.vip *.fca54b67-e2d4-45df-8263-a9b5c55e6d63.toto2871.vip *.members.toto2871.vip *.sea6sg.toto2871.vip *.staging.toto2871.vip *.test.toto2871.vip toto2871.vip *.toto2871.vip *.vip.toto2871.vip *.www.toto2871.vip