Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=77win.ski
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 23, 2026
Valid Until
August 21, 2026 78 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
36:7F:62:B3:DD:8D:22:3B:C1:63:CF:63:9E:6F:3C:CF:2E:9C:24:07:E5:11:3A:56:A2:16:B2:5E:4A:FB:FD:DE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
kocos.co *.kocos.co *.wicki.kocos.co

Other domains in certificate

77win.ski *.77win.ski
*.asp.bonbonbuddies.com bonbonbuddies.com *.bonbonbuddies.com *.buddymail.bonbonbuddies.com *.buddymail2.bonbonbuddies.com *.en.bonbonbuddies.com *.esg.bonbonbuddies.com *.hereweb.bonbonbuddies.com *.mail.bonbonbuddies.com *.newsapp.bonbonbuddies.com *.ofertas-trabajo.bonbonbuddies.com *.osl.bonbonbuddies.com *.plsstg.bonbonbuddies.com *.potaufeu.bonbonbuddies.com *.professional.bonbonbuddies.com *.site.bonbonbuddies.com *.store.bonbonbuddies.com *.v2.bonbonbuddies.com *.v5stg.bonbonbuddies.com *.webmail.bonbonbuddies.com *.www.bonbonbuddies.com
*.03c0k8.did.foundation *.a092d260-4814-40b9-85b9-b09d4c9c91b5.did.foundation *.api.did.foundation *.app.did.foundation *.autodiscover.did.foundation *.danny.did.foundation *.dev.did.foundation did.foundation *.did.foundation *.m.did.foundation *.members.did.foundation *.research.did.foundation *.test.did.foundation *.werkenbij.did.foundation *.zdbxcdanny.did.foundation
*.cbx.doggingvids.com doggingvids.com *.doggingvids.com *.gsd.doggingvids.com *.main-healq.doggingvids.com *.test.doggingvids.com *.webmail.doggingvids.com *.www.doggingvids.com
*.app.donnemature.it *.dev.donnemature.it donnemature.it *.donnemature.it *.oqfngrelay.donnemature.it *.out.donnemature.it *.relay.donnemature.it *.smtps.donnemature.it
hm88.org *.hm88.org *.prod.hm88.org
*.cfwp.jrjzfw.com.cn jrjzfw.com.cn *.jrjzfw.com.cn
kopfre.my *.kopfre.my *.test.kopfre.my
*.admin.neuraledgehot.biz *.app.neuraledgehot.biz *.assets.neuraledgehot.biz *.dev.neuraledgehot.biz *.docs.neuraledgehot.biz *.external.neuraledgehot.biz *.intranet.neuraledgehot.biz *.mail.neuraledgehot.biz *.my.neuraledgehot.biz neuraledgehot.biz *.neuraledgehot.biz *.portal.neuraledgehot.biz *.test.neuraledgehot.biz
*.hostmaster.powerprint.co *.mx.powerprint.co powerprint.co *.powerprint.co *.www.powerprint.co
*.blog.wallas.co *.gatti.wallas.co *.learnberlin.wallas.co wallas.co *.wallas.co *.zac.wallas.co