Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kryt.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 23, 2026
Valid Until
August 21, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:8C:A7:53:F4:FC:50:C6:C7:42:7C:AE:6A:F1:23:1E:5F:28:13:D3:B4:A1:C0:23:4D:32:11:DA:6E:1D:56:7A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
puntosoft.com
*.puntosoft.com
*.apps.puntosoft.com
*.m.puntosoft.com
*.vpn.puntosoft.com
*.16bz5.87d0lls.top
*.1yme1.87d0lls.top
*.4kxnn.87d0lls.top
*.60t9v.87d0lls.top
*.6cd9j.87d0lls.top
*.6y8gt.87d0lls.top
87d0lls.top
*.87d0lls.top
*.95lw2.87d0lls.top
*.96c54.87d0lls.top
*.c6udy.87d0lls.top
*.iovou.87d0lls.top
*.ip4i2.87d0lls.top
*.jzufba.87d0lls.top
*.lbcp6.87d0lls.top
*.nktjv.87d0lls.top
*.qdiek.87d0lls.top
*.vizaseq.87d0lls.top
*.wslq2.87d0lls.top
*.xtmhnlbcp6.87d0lls.top
*.yhue2.87d0lls.top
*.assets.clearweddingpath.beauty
*.backup.clearweddingpath.beauty
clearweddingpath.beauty
*.clearweddingpath.beauty
*.dashboard.clearweddingpath.beauty
*.demo.clearweddingpath.beauty
*.dev.clearweddingpath.beauty
*.f55bb763-51fb-4ed2-b121-6ee18df6d88c.clearweddingpath.beauty
*.grecostg.clearweddingpath.beauty
*.mail.clearweddingpath.beauty
*.qa.clearweddingpath.beauty
*.secure.clearweddingpath.beauty
*.staging.clearweddingpath.beauty
*.stg.clearweddingpath.beauty
*.test.clearweddingpath.beauty
*.uat.clearweddingpath.beauty
*.v1.clearweddingpath.beauty
*.v2.clearweddingpath.beauty
*.web.clearweddingpath.beauty
*.www.clearweddingpath.beauty
*.4qwa0.colonialworlds.xyz
*.60t9v.colonialworlds.xyz
*.8joac.colonialworlds.xyz
*.af8gm4.colonialworlds.xyz
*.cnfr9.colonialworlds.xyz
colonialworlds.xyz
*.colonialworlds.xyz
*.uugt9.colonialworlds.xyz
*.z4r76.colonialworlds.xyz
hostinge.in
*.hostinge.in
*.hpanel.hostinge.in
*.mvideo.hostinge.in
*.abcd.kibisu.com
*.blog.kibisu.com
kibisu.com
*.kibisu.com
*.store.kibisu.com
*.admin.kryt.it
*.com.kryt.it
*.dash.kryt.it
*.hostmaster.kryt.it
kryt.it
*.kryt.it
*.metric.kryt.it
*.remote.kryt.it
*.superset.kryt.it
*.supersets.kryt.it
*.viz.kryt.it
*.09e9909b-fd0c-4068-bd4b-74a38b387dad.rwas.estate
*.65087fbd-f1b6-4307-8bf3-1ea78a7fd7bf.rwas.estate
*.api.rwas.estate
*.app.rwas.estate
rwas.estate
*.rwas.estate
*.vmgx7m.rwas.estate
*.mx.sportmix.co
sportmix.co
*.sportmix.co
streamest.xyz
*.streamest.xyz
*.ww01.streamest.xyz
Other domains in certificate