Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=krz18.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 01, 2026
Valid Until
June 30, 2026 35 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
59:BB:BB:D7:49:0F:B0:D1:C3:5C:FC:4A:A9:E7:CD:F8:2F:BC:95:BE:E4:91:AC:58:57:85:E8:BA:8D:0C:2A:A4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

82 domains
dpdrt.com *.dpdrt.com *.em.dpdrt.com

Other domains in certificate

baccalaureatedegree.xyz *.baccalaureatedegree.xyz *.ww16.baccalaureatedegree.xyz *.ww38.baccalaureatedegree.xyz
chiadvocate.org *.chiadvocate.org
courageous-hearts.org *.courageous-hearts.org
*.campaigns.drinksco.it drinksco.it *.drinksco.it *.ww25.drinksco.it
formx.info *.formx.info
galaxy77bet.pro *.galaxy77bet.pro
hemat.net *.hemat.net *.ww38.hemat.net
info-log1.com *.info-log1.com *.pendaftaran-mr-diy.info-log1.com *.video-virall.info-log1.com
*.basex.inventiosoft.com *.cryptovillagetest.inventiosoft.com inventiosoft.com *.inventiosoft.com *.warfront.inventiosoft.com *.working.inventiosoft.com
klasbahis877.com *.klasbahis877.com *.m.klasbahis877.com
krz18.com *.krz18.com *.random.krz18.com *.ww.krz18.com *.ww25.krz18.com
plaitsafe.org *.plaitsafe.org
platinumpeptides.io *.platinumpeptides.io
*.autoconfig.prediksiku.biz *.ftp.prediksiku.biz prediksiku.biz *.prediksiku.biz
*.adm.republicasocial.network *.app.republicasocial.network *.dev.republicasocial.network *.erp.republicasocial.network *.hosting.republicasocial.network *.m.republicasocial.network *.my.republicasocial.network *.new.republicasocial.network *.panel.republicasocial.network republicasocial.network *.republicasocial.network *.shop.republicasocial.network
retrospect.agency *.retrospect.agency *.shop.retrospect.agency
telecomsatasettlement.com *.telecomsatasettlement.com
*.backend.tss911.org *.hostname.tss911.org *.member.tss911.org *.net.tss911.org tss911.org *.tss911.org *.tss911.tss911.org *.tss919.tss911.org *.winner911.tss911.org
wfewegtfv5.xyz *.wfewegtfv5.xyz
*.oxva.xlim.pro xlim.pro *.xlim.pro
*.ww38.zuhsm.pl zuhsm.pl *.zuhsm.pl