Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=zkwls.tv
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AC:E6:EE:C7:F0:D9:B7:99:80:A0:E4:F0:A9:B2:46:BC:25:86:B6:BD:5D:54:B1:65:49:B0:16:49:E4:01:D7:47
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
iamsushi.com
*.iamsushi.com
hoipk.shop
*.hoipk.shop
ikkmw.academy
*.ikkmw.academy
ilovecinema.it
*.ilovecinema.it
imrestaurant.it
*.imrestaurant.it
industrial-cleaning-587490838.click
*.industrial-cleaning-587490838.click
internetinstallation063923.icu
*.internetinstallation063923.icu
italianporno.it
*.italianporno.it
javexy.com
*.javexy.com
jogo520.pro
*.jogo520.pro
judgments.it
*.judgments.it
kancelarskynabytek-cz.net
*.kancelarskynabytek-cz.net
katarzynachomycka.pl
*.katarzynachomycka.pl
klafv.pro
*.klafv.pro
knee-arthroplasty-403190717.click
*.knee-arthroplasty-403190717.click
konferens.it
*.konferens.it
krypar.com
*.krypar.com
ladiessays.com
*.ladiessays.com
lavista.it
*.lavista.it
law-firms-624274467.click
*.law-firms-624274467.click
leadresearcher.us
*.leadresearcher.us
leadtocustomer.it
*.leadtocustomer.it
lerede.it
*.lerede.it
librio.it
*.librio.it
loterie.it
*.loterie.it
lqiejy.pro
*.lqiejy.pro
lungcancer.it
*.lungcancer.it
luxu.it
*.luxu.it
magickingdom.it
*.magickingdom.it
massager.it
*.massager.it
measure.it
*.measure.it
mojagentka.pl
*.mojagentka.pl
msf64.top
*.msf64.top
nextuleveltop.com
*.nextuleveltop.com
nilem.bid
*.nilem.bid
nonresolvability.com
*.nonresolvability.com
nurhabusinessgroup.com
*.nurhabusinessgroup.com
oatcs.tv
*.oatcs.tv
oggettipreziosi.com
*.oggettipreziosi.com
onfintechzoom.com
*.onfintechzoom.com
plwra.pro
*.plwra.pro
pmdan.shop
*.pmdan.shop
pmpzc.net
*.pmpzc.net
polyurethane-foam-464801309.click
*.polyurethane-foam-464801309.click
zkwls.tv
*.zkwls.tv
Other domains in certificate