Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=kordi.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 30, 2026
Valid Until
April 30, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AC:0C:59:49:15:73:F5:67:27:4C:7C:BA:31:53:1B:8E:BE:D7:A1:58:32:49:DB:E3:2F:3E:B9:8E:D7:C9:73:1E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
reviews786.com
*.reviews786.com
888b.ren
*.888b.ren
*.new.888b.ren
*.www.888b.ren
*.82969e42-930d-4e68-8970-58f70b941afb.arx-metals.com
*.api.arx-metals.com
arx-metals.com
*.arx-metals.com
*.backup.arx-metals.com
*.blog.arx-metals.com
*.cloud.arx-metals.com
*.eb86175f-0cd6-4cfb-9c46-d0da51cc3765.arx-metals.com
*.hostmaster.arx-metals.com
*.insights.arx-metals.com
*.mail.arx-metals.com
*.mailer.arx-metals.com
*.marketing.arx-metals.com
*.phpmyadmin.arx-metals.com
*.rds.arx-metals.com
*.secure.arx-metals.com
*.stg.arx-metals.com
*.v1.arx-metals.com
*.v2.arx-metals.com
*.vpn.arx-metals.com
*.web.arx-metals.com
*.wp.arx-metals.com
*.www.arx-metals.com
courseology.io
*.courseology.io
ewsnepal.com
*.ewsnepal.com
kordi.co
*.kordi.co
*.cpanel.mecca-market.com
*.hostmaster.mecca-market.com
mecca-market.com
*.mecca-market.com
*.webdisk.mecca-market.com
*.webmail.mecca-market.com
*.mail.nadinekerastas.vip
nadinekerastas.vip
*.nadinekerastas.vip
*.admin.nimi.cash
nimi.cash
*.nimi.cash
*.wordpress.nimi.cash
ramsonglobaltrade.com
*.ramsonglobaltrade.com
rora.cc
*.rora.cc
rossiterconsulting.com
*.rossiterconsulting.com
searchlighthealthcare.com
*.searchlighthealthcare.com
silkosports.com
*.silkosports.com
simplystudynews.com
*.simplystudynews.com
sirilaktour.com
*.sirilaktour.com
sponsordata.com
*.sponsordata.com
*.ww38.sponsordata.com
staygroomed.co.uk
*.staygroomed.co.uk
tatesiemercoach.com
*.tatesiemercoach.com
thecurlyduo.com
*.thecurlyduo.com
tjkjw5.net
*.tjkjw5.net
ufc.one
*.ufc.one
ultralinen.com
*.ultralinen.com
unif.live
*.unif.live
uniternation.com
*.uniternation.com
urlart.com
*.urlart.com
vansnorges.com
*.vansnorges.com
whstoneinv.com
*.whstoneinv.com
wumjr930o9k5.com
*.wumjr930o9k5.com
Other domains in certificate