Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kingofkingstea.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 14, 2026
Valid Until
August 12, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
ED:F5:BE:1F:BD:65:F5:3C:D0:FA:49:05:9E:CD:50:60:04:B3:EF:80:7D:CC:A6:4E:70:56:FF:A0:66:38:57:0E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
klio.in
*.klio.in
04448.agency
*.04448.agency
04612.blog
*.04612.blog
06394.loan
*.06394.loan
06657.org
*.06657.org
06998.lgbt
*.06998.lgbt
07063.asia
*.07063.asia
075759.one
*.075759.one
076903.lgbt
*.076903.lgbt
07840.org
*.07840.org
080208.lgbt
*.080208.lgbt
08380.click
*.08380.click
08557.blog
*.08557.blog
090109.lgbt
*.090109.lgbt
09211.asia
*.09211.asia
09512.blog
*.09512.blog
198546.com
*.198546.com
1z748t1v8oup16j.cc
*.1z748t1v8oup16j.cc
*.api.artgeint.com
artgeint.com
*.artgeint.com
*.api.climax.bot
climax.bot
*.climax.bot
*.api.digitalparentingkit.info
digitalparentingkit.info
*.digitalparentingkit.info
*.api.gummies.miami
gummies.miami
*.gummies.miami
*.citrix.ipekelektrik.com
ipekelektrik.com
*.ipekelektrik.com
khtt547tst1405s.sbs
*.khtt547tst1405s.sbs
kingofkingstea.com
*.kingofkingstea.com
kp127.cc
*.kp127.cc
kulturkontor.com
*.kulturkontor.com
localliine.com
*.localliine.com
localljournal.com
*.localljournal.com
*.api.miamibillboard.com
miamibillboard.com
*.miamibillboard.com
moneyfastmachine.com
*.moneyfastmachine.com
myride.org
*.myride.org
nutmeg.xyz
*.nutmeg.xyz
online-englishcourses-class2025.sbs
*.online-englishcourses-class2025.sbs
opensoar.xyz
*.opensoar.xyz
seo0411.cn
*.seo0411.cn
*.demo.viajerimo.org
viajerimo.org
*.viajerimo.org
*.demo.viajerimos.travel
viajerimos.travel
*.viajerimos.travel
*.demo.viajerita.travel
viajerita.travel
*.viajerita.travel
*.1.xn--6nqv23biyi.com
xn--6nqv23biyi.com
*.xn--6nqv23biyi.com
Other domains in certificate