Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kenta.live
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 01, 2026
Valid Until
June 30, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:81:92:55:15:B9:AF:39:C1:B8:A1:5D:2F:65:BE:A6:22:88:91:0D:5D:21:07:64:71:82:AF:72:5B:30:25:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
lyrisc53.co
*.lyrisc53.co
7oc.co
*.7oc.co
*.a.7oc.co
*.ai.7oc.co
*.chat.7oc.co
7signscasinonodeposit.click
*.7signscasinonodeposit.click
aebortik.cyou
*.aebortik.cyou
*.ww38.aebortik.cyou
chiso.xyz
*.chiso.xyz
*.gastronowww.chiso.xyz
*.ww38.chiso.xyz
ggoo.app
*.ggoo.app
*.m.ggoo.app
give-it-a.click
*.give-it-a.click
highlanderhousing.co
*.highlanderhousing.co
jacetmcdonald.net
*.jacetmcdonald.net
*.dev-store.kenta.live
kenta.live
*.kenta.live
*.testmail.kenta.live
*.uat-api-rtm.kenta.live
knottybuoy.co
*.knottybuoy.co
liga365kita.co
*.liga365kita.co
*.87pp54.lovy8.com
lovy8.com
*.lovy8.com
*.ww38.lovy8.com
*.6441056b613c32a9.memorialcareers.com
*.email.memorialcareers.com
*.emv1.memorialcareers.com
*.mail.memorialcareers.com
memorialcareers.com
*.memorialcareers.com
*.sitemap.memorialcareers.com
*.sitemaps.memorialcareers.com
*.smtp-1.memorialcareers.com
motorclubvehiclemovements.co.uk
*.motorclubvehiclemovements.co.uk
nightshade.vip
*.nightshade.vip
*.vip.nightshade.vip
*.app.ozar.pro
*.claims.ozar.pro
ozar.pro
*.ozar.pro
qmg44.cc
*.qmg44.cc
scientificcoup.org
*.scientificcoup.org
*.admin.securtybenefit.com
*.hostmaster.securtybenefit.com
securtybenefit.com
*.securtybenefit.com
senpaistream.co
*.senpaistream.co
slimfitcolombia.co
*.slimfitcolombia.co
tansik.digital
*.tansik.digital
*.ww.tansik.digital
*.blog.thehighboy.com
thehighboy.com
*.thehighboy.com
tivaro.pro
*.tivaro.pro
*.ww38.tivaro.pro
*.clubwww.usstocks.club
*.office.usstocks.club
usstocks.club
*.usstocks.club
*.ww25.usstocks.club
validusonline.xyz
*.validusonline.xyz
vetklinika.biz
*.vetklinika.biz
*.webdisk.vetklinika.biz
web-spark.site
*.web-spark.site
Other domains in certificate