Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=kinobox.cc
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 09, 2026
Valid Until
April 09, 2026 42 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C0:85:C1:A9:25:69:18:FF:8A:00:EB:C9:BB:92:B4:13:81:F0:3B:F5:69:DA:39:0F:A3:21:44:16:0B:FE:10:8F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
redthbe.com *.redthbe.com

Other domains in certificate

allhours.au *.allhours.au
alwaysangry.com *.alwaysangry.com
anncoulter.org *.anncoulter.org
ass5all.com *.ass5all.com
bandscheibendegeneration.de *.bandscheibendegeneration.de
*.47.kinobox.cc *.access1.kinobox.cc *.bem.kinobox.cc *.bigsave.kinobox.cc *.bydgoszcz.kinobox.cc *.certificates.kinobox.cc *.chs.kinobox.cc *.cpr.kinobox.cc *.csf1-3.kinobox.cc *.d12.kinobox.cc *.dean.kinobox.cc *.deepolis.kinobox.cc *.don.kinobox.cc *.empresas.kinobox.cc *.gabvirtual.kinobox.cc *.gals.kinobox.cc *.gen.kinobox.cc *.genius.kinobox.cc *.greendog.kinobox.cc *.ism.kinobox.cc *.keyserver.kinobox.cc kinobox.cc *.kinobox.cc *.kn.kinobox.cc *.livehelp.kinobox.cc *.lobby.kinobox.cc *.lookup.kinobox.cc *.mail2.kinobox.cc *.masters.kinobox.cc *.mg1.kinobox.cc *.microsites.kinobox.cc *.mps.kinobox.cc *.nat-pool.kinobox.cc *.ngo.kinobox.cc *.nudesport.kinobox.cc *.nv-img-hn.kinobox.cc *.openmeetings.kinobox.cc *.pav.kinobox.cc *.planning.kinobox.cc *.post2.kinobox.cc *.prepaid.kinobox.cc *.present.kinobox.cc *.pulse.kinobox.cc *.robot.kinobox.cc *.s67.kinobox.cc *.sharing.kinobox.cc *.slim.kinobox.cc *.smalltits.kinobox.cc *.ss.kinobox.cc *.st01.kinobox.cc *.sviluppo.kinobox.cc *.t8.kinobox.cc *.tab.kinobox.cc *.token.kinobox.cc *.vet.kinobox.cc *.voip3.kinobox.cc *.wapmail.kinobox.cc *.webedit.kinobox.cc *.win7.kinobox.cc *.zw.kinobox.cc
mgts.au *.mgts.au
nortland.de *.nortland.de
orbitza.com *.orbitza.com
pacificpines.au *.pacificpines.au *.random.pacificpines.au
repairwindshield.com *.repairwindshield.com
saxsfifth.com *.saxsfifth.com
*.hrcp.ttansunion.com ttansunion.com *.ttansunion.com
vcsd.com *.vcsd.com