Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=77win.ski
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 23, 2026
Valid Until
August 21, 2026
78 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
36:7F:62:B3:DD:8D:22:3B:C1:63:CF:63:9E:6F:3C:CF:2E:9C:24:07:E5:11:3A:56:A2:16:B2:5E:4A:FB:FD:DE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
kocos.co
*.kocos.co
*.wicki.kocos.co
77win.ski
*.77win.ski
*.asp.bonbonbuddies.com
bonbonbuddies.com
*.bonbonbuddies.com
*.buddymail.bonbonbuddies.com
*.buddymail2.bonbonbuddies.com
*.en.bonbonbuddies.com
*.esg.bonbonbuddies.com
*.hereweb.bonbonbuddies.com
*.mail.bonbonbuddies.com
*.newsapp.bonbonbuddies.com
*.ofertas-trabajo.bonbonbuddies.com
*.osl.bonbonbuddies.com
*.plsstg.bonbonbuddies.com
*.potaufeu.bonbonbuddies.com
*.professional.bonbonbuddies.com
*.site.bonbonbuddies.com
*.store.bonbonbuddies.com
*.v2.bonbonbuddies.com
*.v5stg.bonbonbuddies.com
*.webmail.bonbonbuddies.com
*.www.bonbonbuddies.com
*.03c0k8.did.foundation
*.a092d260-4814-40b9-85b9-b09d4c9c91b5.did.foundation
*.api.did.foundation
*.app.did.foundation
*.autodiscover.did.foundation
*.danny.did.foundation
*.dev.did.foundation
did.foundation
*.did.foundation
*.m.did.foundation
*.members.did.foundation
*.research.did.foundation
*.test.did.foundation
*.werkenbij.did.foundation
*.zdbxcdanny.did.foundation
*.cbx.doggingvids.com
doggingvids.com
*.doggingvids.com
*.gsd.doggingvids.com
*.main-healq.doggingvids.com
*.test.doggingvids.com
*.webmail.doggingvids.com
*.www.doggingvids.com
*.app.donnemature.it
*.dev.donnemature.it
donnemature.it
*.donnemature.it
*.oqfngrelay.donnemature.it
*.out.donnemature.it
*.relay.donnemature.it
*.smtps.donnemature.it
hm88.org
*.hm88.org
*.prod.hm88.org
*.cfwp.jrjzfw.com.cn
jrjzfw.com.cn
*.jrjzfw.com.cn
kopfre.my
*.kopfre.my
*.test.kopfre.my
*.admin.neuraledgehot.biz
*.app.neuraledgehot.biz
*.assets.neuraledgehot.biz
*.dev.neuraledgehot.biz
*.docs.neuraledgehot.biz
*.external.neuraledgehot.biz
*.intranet.neuraledgehot.biz
*.mail.neuraledgehot.biz
*.my.neuraledgehot.biz
neuraledgehot.biz
*.neuraledgehot.biz
*.portal.neuraledgehot.biz
*.test.neuraledgehot.biz
*.hostmaster.powerprint.co
*.mx.powerprint.co
powerprint.co
*.powerprint.co
*.www.powerprint.co
*.blog.wallas.co
*.gatti.wallas.co
*.learnberlin.wallas.co
wallas.co
*.wallas.co
*.zac.wallas.co
Other domains in certificate