Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=krz18.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 01, 2026
Valid Until
June 30, 2026
35 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
59:BB:BB:D7:49:0F:B0:D1:C3:5C:FC:4A:A9:E7:CD:F8:2F:BC:95:BE:E4:91:AC:58:57:85:E8:BA:8D:0C:2A:A4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
82 domains
dpdrt.com
*.dpdrt.com
*.em.dpdrt.com
baccalaureatedegree.xyz
*.baccalaureatedegree.xyz
*.ww16.baccalaureatedegree.xyz
*.ww38.baccalaureatedegree.xyz
chiadvocate.org
*.chiadvocate.org
courageous-hearts.org
*.courageous-hearts.org
*.campaigns.drinksco.it
drinksco.it
*.drinksco.it
*.ww25.drinksco.it
formx.info
*.formx.info
galaxy77bet.pro
*.galaxy77bet.pro
hemat.net
*.hemat.net
*.ww38.hemat.net
info-log1.com
*.info-log1.com
*.pendaftaran-mr-diy.info-log1.com
*.video-virall.info-log1.com
*.basex.inventiosoft.com
*.cryptovillagetest.inventiosoft.com
inventiosoft.com
*.inventiosoft.com
*.warfront.inventiosoft.com
*.working.inventiosoft.com
klasbahis877.com
*.klasbahis877.com
*.m.klasbahis877.com
krz18.com
*.krz18.com
*.random.krz18.com
*.ww.krz18.com
*.ww25.krz18.com
plaitsafe.org
*.plaitsafe.org
platinumpeptides.io
*.platinumpeptides.io
*.autoconfig.prediksiku.biz
*.ftp.prediksiku.biz
prediksiku.biz
*.prediksiku.biz
*.adm.republicasocial.network
*.app.republicasocial.network
*.dev.republicasocial.network
*.erp.republicasocial.network
*.hosting.republicasocial.network
*.m.republicasocial.network
*.my.republicasocial.network
*.new.republicasocial.network
*.panel.republicasocial.network
republicasocial.network
*.republicasocial.network
*.shop.republicasocial.network
retrospect.agency
*.retrospect.agency
*.shop.retrospect.agency
telecomsatasettlement.com
*.telecomsatasettlement.com
*.backend.tss911.org
*.hostname.tss911.org
*.member.tss911.org
*.net.tss911.org
tss911.org
*.tss911.org
*.tss911.tss911.org
*.tss919.tss911.org
*.winner911.tss911.org
wfewegtfv5.xyz
*.wfewegtfv5.xyz
*.oxva.xlim.pro
xlim.pro
*.xlim.pro
*.ww38.zuhsm.pl
zuhsm.pl
*.zuhsm.pl
Other domains in certificate