Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=kostkas.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 19, 2026
Valid Until
May 20, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9F:BA:B0:49:84:23:CF:3D:46:99:05:9F:37:48:EC:7A:E4:08:87:CF:F3:67:21:A3:48:51:6F:E1:5D:CE:A1:30
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

84 domains
guarini.com *.guarini.com *.api.guarini.com *.assets.guarini.com *.cliente.guarini.com *.gateway.guarini.com *.hostmaster.guarini.com *.m.guarini.com *.mail.guarini.com *.mail10.guarini.com *.mail9.guarini.com *.mailer.guarini.com *.mailhost.guarini.com *.mx2.guarini.com *.njcu.guarini.com *.sitemaps.guarini.com *.ww11.guarini.com *.ww16.guarini.com *.ww17.guarini.com *.ww25.guarini.com *.ww38.guarini.com *.ww5.guarini.com

Other domains in certificate

*.admin.chingle.com *.api.chingle.com *.assets.chingle.com *.autodiscover.chingle.com chingle.com *.chingle.com *.crhgflno.chingle.com *.emv1.chingle.com *.hostmaster.chingle.com *.imap1.chingle.com *.m.chingle.com *.mail.chingle.com *.mail1.chingle.com *.mailhost.chingle.com *.sitemap.chingle.com *.sitemaps.chingle.com *.smtp.chingle.com *.webmail.chingle.com *.ww1.chingle.com *.ww25.chingle.com *.ww5.chingle.com *.www1.chingle.com
*.api.effortlesscreditrepair.com *.app.effortlesscreditrepair.com *.dev.effortlesscreditrepair.com effortlesscreditrepair.com *.effortlesscreditrepair.com *.git.effortlesscreditrepair.com *.hostmaster.effortlesscreditrepair.com *.m.effortlesscreditrepair.com *.mail.effortlesscreditrepair.com *.mta-sts.effortlesscreditrepair.com *.remote.effortlesscreditrepair.com *.test.effortlesscreditrepair.com *.ww12.effortlesscreditrepair.com *.www.effortlesscreditrepair.com
*.access.kostkas.com *.apps.kostkas.com *.central.kostkas.com *.cloud.kostkas.com *.gateway.kostkas.com kostkas.com *.kostkas.com *.m.kostkas.com *.mail.kostkas.com *.portal.kostkas.com *.rdp.kostkas.com *.rds.kostkas.com *.rds1.kostkas.com *.rdweb.kostkas.com *.remote.kostkas.com *.sitemap.kostkas.com *.sitemaps.kostkas.com *.ts.kostkas.com *.vpn.kostkas.com *.ww1.kostkas.com *.ww11.kostkas.com *.ww16.kostkas.com *.ww17.kostkas.com *.ww25.kostkas.com *.ww38.kostkas.com *.www.kostkas.com