Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=xzk.me
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 25, 2026
Valid Until
July 24, 2026
63 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:7E:44:76:EC:5B:91:18:43:69:82:78:03:B2:99:06:42:E7:96:F8:4D:6E:55:46:A0:5E:CE:E1:77:61:5F:45
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
ventana.pro
*.ventana.pro
*.hostmaster.ventana.pro
albertaprecisinlabs.ca
*.albertaprecisinlabs.ca
cheapflightsfares.co
*.cheapflightsfares.co
chickensex.com
*.chickensex.com
company-party-venues149.click
*.company-party-venues149.click
compliance-software-37.click
*.compliance-software-37.click
*.blog.corzo.app
corzo.app
*.corzo.app
cyberconsulting.pro
*.cyberconsulting.pro
*.hostmaster.cyberconsulting.pro
*.wildcardsubdomaintoprocess.cyberconsulting.pro
eye-bag-surgery-42.click
*.eye-bag-surgery-42.click
*.co.fileextensionpro.com
fileextensionpro.com
*.fileextensionpro.com
*.hostmaster.fileextensionpro.com
*.members.fileextensionpro.com
*.mn.fileextensionpro.com
*.perfection.fileextensionpro.com
*.submit.fileextensionpro.com
*.e3c6a6b.gl1emq8.top
gl1emq8.top
*.gl1emq8.top
lamagnanerie.com
*.lamagnanerie.com
*.applications.networkbusiness.it
*.exchangecorp.networkbusiness.it
*.exchmail.networkbusiness.it
*.imap.networkbusiness.it
*.mymail.networkbusiness.it
networkbusiness.it
*.networkbusiness.it
*.notexistsmail3.networkbusiness.it
*.ogrencieposta.networkbusiness.it
*.owa.networkbusiness.it
*.pop.networkbusiness.it
*.portal.networkbusiness.it
*.rd.networkbusiness.it
*.rds.networkbusiness.it
*.rdweb.networkbusiness.it
*.sama.networkbusiness.it
*.scpublic.networkbusiness.it
*.visual.networkbusiness.it
*.vpnadm.networkbusiness.it
*.webmail.networkbusiness.it
*.webmail2013.networkbusiness.it
*.xapp.networkbusiness.it
norseairline.com
*.norseairline.com
*.app.phonebill.it
*.backend.phonebill.it
*.bi.phonebill.it
*.dash.phonebill.it
*.dashboards.phonebill.it
*.demo.phonebill.it
*.dev.phonebill.it
phonebill.it
*.phonebill.it
*.redash.phonebill.it
*.remote.phonebill.it
*.reporting.phonebill.it
*.api.privatethaichefmaryland.com
*.app.privatethaichefmaryland.com
privatethaichefmaryland.com
*.privatethaichefmaryland.com
*.vpn.privatethaichefmaryland.com
*.www.privatethaichefmaryland.com
*.93www.xzk.me
*.app.xzk.me
*.flows.xzk.me
*.hostmaster.xzk.me
*.img.xzk.me
*.img2.xzk.me
*.m.xzk.me
*.www.xzk.me
*.xn--3y3b.xzk.me
*.xn--www-3y3b.xzk.me
xzk.me
*.xzk.me
Other domains in certificate