Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kelaskoding.xyz
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 26, 2026
Valid Until
September 24, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:6E:DD:60:25:8D:FE:54:F5:C1:C2:28:4F:0F:74:F8:6A:05:9B:87:A1:AD:D5:12:90:C6:44:A3:A7:A1:01:3A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
54 domains
holdingfund.com
*.holdingfund.com
burgerpla.net
*.burgerpla.net
*.ww16.burgerpla.net
casaeuropa.it
*.casaeuropa.it
*.hostmaster.casaeuropa.it
cpharmacy-krcenter.com
*.cpharmacy-krcenter.com
*.mpvie19.cpharmacy-krcenter.com
cvecara.com
*.cvecara.com
*.art.doordash.today
*.authsmtp.doordash.today
doordash.today
*.doordash.today
*.imap.doordash.today
*.mx.doordash.today
*.mx02.doordash.today
*.rem0ter90j0hruyl.doordash.today
*.ww25.doordash.today
*.ww3.doordash.today
*.ww38.doordash.today
greco.studio
*.greco.studio
juannavidad.com
*.juannavidad.com
*.wwww.juannavidad.com
*.alpha.kelaskoding.xyz
*.kampus.kelaskoding.xyz
kelaskoding.xyz
*.kelaskoding.xyz
*.landing.kelaskoding.xyz
loaivo.com
*.loaivo.com
luna-boutique.co
*.luna-boutique.co
lygia.com
*.lygia.com
nhathuocphucdan.com
*.nhathuocphucdan.com
rarqtigu.com
*.rarqtigu.com
sexy-me.cc
*.sexy-me.cc
techubghana.com
*.techubghana.com
thecornfield.com
*.thecornfield.com
transexy.cc
*.transexy.cc
www-wow69.com
*.www-wow69.com
Other domains in certificate