Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=1252kk.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 22, 2026
Valid Until
July 21, 2026 33 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:24:E7:54:C5:EE:9E:4C:7C:01:EC:45:6F:21:97:25:72:67:F4:BA:B8:28:59:4D:CF:76:86:E5:5A:B3:69:BD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
damned.it *.damned.it *.app.damned.it *.ar.damned.it *.asp.damned.it *.astelmail.damned.it *.bbs.damned.it *.citrixcloud.damned.it *.dash.damned.it *.email.damned.it *.est-vpn.damned.it *.exchange.damned.it *.go.damned.it *.heip.damned.it *.helpdesk.damned.it *.hostmaster.damned.it *.i.damned.it *.mail.damned.it *.man.damned.it *.metrics.damned.it *.nvdi.damned.it *.owa.damned.it *.portal.damned.it *.preview.damned.it *.pro.damned.it *.reports.damned.it *.stats.damned.it *.visual.damned.it *.vpnma.damned.it *.wwww.damned.it *.xd.damned.it

Other domains in certificate

1252kk.com *.1252kk.com
3xne.xyz *.3xne.xyz *.ww25.3xne.xyz *.ww38.3xne.xyz
amp-best-dnatoto.sbs *.amp-best-dnatoto.sbs *.rustore.amp-best-dnatoto.sbs
*.1845e1bf-50c1-4b2f-963e-77d14bb1e0eb.buffalocasino.ag *.1ffd8046-19a9-4de1-8780-9a479332a5c4.buffalocasino.ag *.47a19131-47eb-4355-9f46-e283902cf16a.buffalocasino.ag *.ae87a0b6-542a-4934-99b0-6413782824d4.buffalocasino.ag *.blog.buffalocasino.ag buffalocasino.ag *.buffalocasino.ag *.d558a7bf-65f7-4dd7-aebb-cedf2160cbb6.buffalocasino.ag *.hostmaster.buffalocasino.ag *.jolxtdsmivblog.buffalocasino.ag
dogbarkingcollars.com.au *.dogbarkingcollars.com.au
dota2bet.cc *.dota2bet.cc
fivestarhotel.com.au *.fivestarhotel.com.au
*.inst.instashowplushomes.com instashowplushomes.com *.instashowplushomes.com
kyz7dar-lghe.net *.kyz7dar-lghe.net
*.archive.maisondakar.com *.cgi.maisondakar.com maisondakar.com *.maisondakar.com *.www.maisondakar.com
minimagic.online *.minimagic.online
*.ar.mpks.com mpks.com *.mpks.com
pambe.store *.pambe.store
*.ftp.qawlkahtech.xyz qawlkahtech.xyz *.qawlkahtech.xyz *.ww38.qawlkahtech.xyz
reliablesoftwaretesting.com *.reliablesoftwaretesting.com
*.mail.sterlin.bet sterlin.bet *.sterlin.bet
stokesubhamdonaa.uk *.stokesubhamdonaa.uk
thegoldenboar.co.uk *.thegoldenboar.co.uk
*.book.trye.io trye.io *.trye.io *.www.trye.io