Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ekipite.net
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 19, 2026
Valid Until
September 17, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:F9:5F:5F:4A:33:9D:25:F0:65:59:52:59:46:FC:D9:62:76:D5:49:17:02:78:DF:F6:24:0D:8A:EE:D7:23:10
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ekipite.net
*.ekipite.net
*.ww16.ekipite.net
*.ww38.ekipite.net
13593.bike
*.13593.bike
22557.bike
*.22557.bike
a409yyq.top
*.a409yyq.top
*.dpayxrww.a409yyq.top
allevon.com
*.allevon.com
*.test.allevon.com
dfacpz50.com
*.dfacpz50.com
dfacpz52.com
*.dfacpz52.com
dflkur29sl.cc
*.dflkur29sl.cc
dfocz.loan
*.dfocz.loan
dgcecej918.vip
*.dgcecej918.vip
dghor.net
*.dghor.net
dghya.gdn
*.dghya.gdn
dgiet.cc
*.dgiet.cc
dgnpw.bid
*.dgnpw.bid
dgwuu.com
*.dgwuu.com
dimon888.com
*.dimon888.com
directreemedia.com
*.directreemedia.com
diveintoblue.com
*.diveintoblue.com
eatteff.com
*.eatteff.com
eikontech.click
*.eikontech.click
eldisevent.com
*.eldisevent.com
emailforfree2grow.info
*.emailforfree2grow.info
en26z.top
*.en26z.top
enbqi.loan
*.enbqi.loan
*.0gchain.josephtran.xyz
*.explorer.josephtran.xyz
josephtran.xyz
*.josephtran.xyz
*.09rfyl.jslongzm.cn
*.1o0.jslongzm.cn
*.5la.jslongzm.cn
*.ctmvunqz.jslongzm.cn
*.dol0.jslongzm.cn
*.gpfxni.jslongzm.cn
jslongzm.cn
*.jslongzm.cn
*.kmi3.jslongzm.cn
*.oiuxxdol0.jslongzm.cn
*.uxxdol0.jslongzm.cn
*.4645cb35-e3db-4c2e-91c3-77b34aba7853.nanikaachar.info
nanikaachar.info
*.nanikaachar.info
*.www.nanikaachar.info
raya.chat
*.raya.chat
*.cloud.sindoor.in
*.community.sindoor.in
*.hdjgbzce.sindoor.in
*.hostmaster.sindoor.in
*.m.sindoor.in
*.prod.sindoor.in
sindoor.in
*.sindoor.in
*.sitemap.sindoor.in
*.ssh.sindoor.in
*.www.sindoor.in
stopgeweld.nl
*.stopgeweld.nl
subscriptionboxesforwomen.org
*.subscriptionboxesforwomen.org
tdsnext.com
*.tdsnext.com
Other domains in certificate