Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=kp16.video
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:77:17:49:35:5D:E4:F6:AC:0B:D7:D7:19:D9:FB:46:5B:A3:94:07:2B:98:B4:37:45:36:AE:9C:3E:7E:23:2E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
lesbienne.it
*.lesbienne.it
journeytraveladventures.xyz
*.journeytraveladventures.xyz
jovita.it
*.jovita.it
jubilacion.co
*.jubilacion.co
kisstherain.it
*.kisstherain.it
kliklink-arah4d.baby
*.kliklink-arah4d.baby
kp16.video
*.kp16.video
kpiy79.net
*.kpiy79.net
krypto.college
*.krypto.college
lakdasun.com
*.lakdasun.com
lawtrainingnow.com
*.lawtrainingnow.com
libreriainterbook.com
*.libreriainterbook.com
lifelist.it
*.lifelist.it
ligaz24.club
*.ligaz24.club
lighthouse-mortgage.com
*.lighthouse-mortgage.com
liliestan.com
*.liliestan.com
smartreachpro.click
*.smartreachpro.click
smav335.com
*.smav335.com
smavsp939.com
*.smavsp939.com
smavsp955.com
*.smavsp955.com
smavsp971.com
*.smavsp971.com
smrk167.top
*.smrk167.top
socialhacks.net
*.socialhacks.net
softsense7.com
*.softsense7.com
somang-clinic-674310013.click
*.somang-clinic-674310013.click
sonyafigueiredocoach.com
*.sonyafigueiredocoach.com
soontechnologies.com
*.soontechnologies.com
sooper.it
*.sooper.it
sopha.it
*.sopha.it
sophisticatedfoodart.food
*.sophisticatedfoodart.food
sopletes.com
*.sopletes.com
soqajkyfwhyhs.cc
*.soqajkyfwhyhs.cc
soraiaramos.com
*.soraiaramos.com
sorda.it
*.sorda.it
sorelleselect.com
*.sorelleselect.com
sorento.co
*.sorento.co
sorongtoto2.vip
*.sorongtoto2.vip
sorsa.co
*.sorsa.co
sparklin-ev.com
*.sparklin-ev.com
specialway.it
*.specialway.it
sportscapital.co
*.sportscapital.co
spota.it
*.spota.it
sstv35.cc
*.sstv35.cc
stargate.meme
*.stargate.meme
starisland.us
*.starisland.us
Other domains in certificate