Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=gunnight.io
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 09, 2026
Valid Until
August 07, 2026
57 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:3C:C1:63:48:54:BA:6B:29:88:56:5F:A5:B1:83:F4:8D:AA:E7:91:BD:90:2A:A0:06:D3:42:78:FD:41:CA:60
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
kinghistoria.com
*.kinghistoria.com
*.faizal.kinghistoria.com
*.journal.kinghistoria.com
*.kitab.kinghistoria.com
*.lib.kinghistoria.com
*.avjge.deretikijob.xyz
*.bgbhd.deretikijob.xyz
*.bogks.deretikijob.xyz
*.cdwlz.deretikijob.xyz
*.cwznz.deretikijob.xyz
deretikijob.xyz
*.deretikijob.xyz
*.ejcix.deretikijob.xyz
*.fl7q7.deretikijob.xyz
*.ggfkp.deretikijob.xyz
*.hknct.deretikijob.xyz
*.hsvib.deretikijob.xyz
*.kewpy.deretikijob.xyz
*.ldxky.deretikijob.xyz
*.ljcjx.deretikijob.xyz
*.ljdje.deretikijob.xyz
*.nojgm.deretikijob.xyz
*.obbww.deretikijob.xyz
*.qgoke.deretikijob.xyz
*.rtzdf.deretikijob.xyz
*.sgywz.deretikijob.xyz
*.tevsx.deretikijob.xyz
*.umvjm.deretikijob.xyz
*.uuyhk.deretikijob.xyz
*.v0jo4.deretikijob.xyz
*.vbqtn.deretikijob.xyz
*.vtqfw.deretikijob.xyz
*.w7z37.deretikijob.xyz
*.wurof.deretikijob.xyz
*.ww25.deretikijob.xyz
*.yevqk.deretikijob.xyz
diajuegos.com
*.diajuegos.com
*.imap.diajuegos.com
*.ns1.diajuegos.com
*.ns2.diajuegos.com
*.shop.diajuegos.com
*.ww25.diajuegos.com
*.ww38.diajuegos.com
*.www.diajuegos.com
digifittoken.com
*.digifittoken.com
*.lltl-sv.digifittoken.com
*.ww25.digifittoken.com
diwaxgaming.com
*.diwaxgaming.com
*.ww38.diwaxgaming.com
fullscatvideos.club
*.fullscatvideos.club
*.hostmaster.fullscatvideos.club
*.preprod.fullscatvideos.club
*.random.fullscatvideos.club
*.test.fullscatvideos.club
*.analitik.gotham.bio
*.explore.gotham.bio
gotham.bio
*.gotham.bio
*.sitemap.gotham.bio
gunnight.io
*.gunnight.io
*.ww25.gunnight.io
*.ww38.gunnight.io
*.barracuda.mgmsmog.com
*.blog.mgmsmog.com
*.cit.mgmsmog.com
*.dev.mgmsmog.com
*.events.mgmsmog.com
mgmsmog.com
*.mgmsmog.com
*.sandbox.mgmsmog.com
*.secure.mgmsmog.com
*.ww25.mgmsmog.com
ossagi.com
*.ossagi.com
*.ww38.ossagi.com
*.biaclientep.romo.live
*.mta-sts.romo.live
romo.live
*.romo.live
*.ww38.romo.live
*.32.safemove.pro
safemove.pro
*.safemove.pro
Other domains in certificate