Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=unisona.cfd
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026 68 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2F:0F:15:35:E1:DA:45:79:BB:C7:F0:EC:2F:C8:81:B0:AB:D1:10:FE:95:B1:82:9E:17:7E:88:D4:90:2B:C0:90
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
kigoz.com *.kigoz.com

Other domains in certificate

alcon.cc *.alcon.cc *.api.alcon.cc *.app.alcon.cc *.random.alcon.cc
allcallpackages.com *.allcallpackages.com
biggumsbbq.com *.biggumsbbq.com *.m.biggumsbbq.com *.play.biggumsbbq.com *.tv.biggumsbbq.com
chinagayvideo.com *.chinagayvideo.com *.ww25.chinagayvideo.com *.ww38.chinagayvideo.com
coxwoldtearooms.co.uk *.coxwoldtearooms.co.uk
dawggone.com *.dawggone.com *.dev.dawggone.com *.sitemap.dawggone.com
*.api.hostar.fun *.free-fire-india-offical.hostar.fun hostar.fun *.hostar.fun *.i.hostar.fun *.india.hostar.fun *.m.hostar.fun *.ud.hostar.fun
*.blogs.indews.com *.cnc.indews.com indews.com *.indews.com
*.b5c9a6f6-d664-4666-be76-24842ea7f8bd.kdsrsu.xyz kdsrsu.xyz *.kdsrsu.xyz *.sitemap.kdsrsu.xyz *.ww25.kdsrsu.xyz
kingdom120.com *.kingdom120.com
moneyklass.com *.moneyklass.com
oncinha.com *.oncinha.com *.ttofbanyconnect.oncinha.com
planetlab.space *.planetlab.space
setushe.com *.setushe.com *.ww25.setushe.com
*.annal.sextaboo.com *.bestiality.sextaboo.com *.bestisality.sextaboo.com sextaboo.com *.sextaboo.com *.www27.sextaboo.com *.xxx.sextaboo.com
*.layna-marie.unisona.cfd unisona.cfd *.unisona.cfd
*.ipad.usbankmortage.com *.subnet-213.usbankmortage.com usbankmortage.com *.usbankmortage.com *.web16953.usbankmortage.com
*.usa.weeke-training.com weeke-training.com *.weeke-training.com *.woodwop.weeke-training.com *.ww38.weeke-training.com
*.comimg.yingshuge.com *.m.yingshuge.com *.ww25.yingshuge.com yingshuge.com *.yingshuge.com
*.wildcard.ytsmovies.com ytsmovies.com *.ytsmovies.com
*.hotfix.yyyyyyyy.com *.main.yyyyyyyy.com *.ns1.yyyyyyyy.com *.portal.yyyyyyyy.com *.ww25.yyyyyyyy.com *.xxx.yyyyyyyy.com *.xxxx-proxy.yyyyyyyy.com yyyyyyyy.com *.yyyyyyyy.com