76/100 SECURITY SCORE

Certificate Information

Subject
CN=koltry.life
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 20, 2026
Valid Until
June 18, 2026 45 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
83:8D:CC:FB:76:B7:F8:C5:FD:7D:62:20:60:5B:F5:95:81:4F:12:29:A9:9A:6D:F5:34:EA:04:39:A5:1F:48:C6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
pegzip.com *.pegzip.com *.receita.pegzip.com

Other domains in certificate

7streamx.com *.7streamx.com *.ww25.7streamx.com
abandon.com.au *.abandon.com.au *.mx.abandon.com.au
alderridge.co.uk *.alderridge.co.uk *.mail.alderridge.co.uk *.ww38.alderridge.co.uk
*.admin.ctzq2.vip *.api.ctzq2.vip *.blog.ctzq2.vip ctzq2.vip *.ctzq2.vip *.d9f8629e-fa83-4cf3-97ef-d3384de4ebd8.ctzq2.vip *.demo.ctzq2.vip
dramazones.xyz *.dramazones.xyz *.ww38.dramazones.xyz
*.api.escola.it escola.it *.escola.it *.matricula.escola.it *.metrics.escola.it *.redash.escola.it
*.ec3njieszl.eugastronomieshop.eu eugastronomieshop.eu *.eugastronomieshop.eu *.xki68w0kzj.eugastronomieshop.eu
*.app.fitnessaustralia.co *.assets.fitnessaustralia.co *.dev.fitnessaustralia.co *.emv1.fitnessaustralia.co fitnessaustralia.co *.fitnessaustralia.co *.www.fitnessaustralia.co
geturls.website *.geturls.website *.ww16.geturls.website
gntns.poker *.gntns.poker
grabezprofits.com *.grabezprofits.com
koltry.life *.koltry.life *.ww25.koltry.life
lampagoetrike.store *.lampagoetrike.store
linkaltdprtoto.site *.linkaltdprtoto.site *.www.linkaltdprtoto.site
makeoffer.com.au *.makeoffer.com.au
*.backend.maniga.it *.cisapp.maniga.it *.connect.maniga.it *.cuvpn.maniga.it *.email.maniga.it *.idpd.maniga.it *.mail.maniga.it maniga.it *.maniga.it
*.comwww.moviesae.cc moviesae.cc *.moviesae.cc *.top.moviesae.cc
panawareness.com.au *.panawareness.com.au
*.autodiscover.sycd.co.uk *.mail.sycd.co.uk sycd.co.uk *.sycd.co.uk
telotengomx.store *.telotengomx.store *.ww25.telotengomx.store
*.arranger.wiz24.site *.butterbear.wiz24.site *.hon.wiz24.site *.lion.wiz24.site *.master.wiz24.site *.mrgblog.wiz24.site *.rock.wiz24.site *.smileconnect.wiz24.site *.wb.wiz24.site wiz24.site *.wiz24.site