Cached · just now
79/100 SECURITY SCORE

Certificate Information

Subject
CN=kordi.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 30, 2026
Valid Until
April 30, 2026 80 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AC:0C:59:49:15:73:F5:67:27:4C:7C:BA:31:53:1B:8E:BE:D7:A1:58:32:49:DB:E3:2F:3E:B9:8E:D7:C9:73:1E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
reviews786.com *.reviews786.com

Other domains in certificate

888b.ren *.888b.ren *.new.888b.ren *.www.888b.ren
*.82969e42-930d-4e68-8970-58f70b941afb.arx-metals.com *.api.arx-metals.com arx-metals.com *.arx-metals.com *.backup.arx-metals.com *.blog.arx-metals.com *.cloud.arx-metals.com *.eb86175f-0cd6-4cfb-9c46-d0da51cc3765.arx-metals.com *.hostmaster.arx-metals.com *.insights.arx-metals.com *.mail.arx-metals.com *.mailer.arx-metals.com *.marketing.arx-metals.com *.phpmyadmin.arx-metals.com *.rds.arx-metals.com *.secure.arx-metals.com *.stg.arx-metals.com *.v1.arx-metals.com *.v2.arx-metals.com *.vpn.arx-metals.com *.web.arx-metals.com *.wp.arx-metals.com *.www.arx-metals.com
courseology.io *.courseology.io
ewsnepal.com *.ewsnepal.com
kordi.co *.kordi.co
*.cpanel.mecca-market.com *.hostmaster.mecca-market.com mecca-market.com *.mecca-market.com *.webdisk.mecca-market.com *.webmail.mecca-market.com
*.mail.nadinekerastas.vip nadinekerastas.vip *.nadinekerastas.vip
*.admin.nimi.cash nimi.cash *.nimi.cash *.wordpress.nimi.cash
ramsonglobaltrade.com *.ramsonglobaltrade.com
rora.cc *.rora.cc
rossiterconsulting.com *.rossiterconsulting.com
searchlighthealthcare.com *.searchlighthealthcare.com
silkosports.com *.silkosports.com
simplystudynews.com *.simplystudynews.com
sirilaktour.com *.sirilaktour.com
sponsordata.com *.sponsordata.com *.ww38.sponsordata.com
staygroomed.co.uk *.staygroomed.co.uk
tatesiemercoach.com *.tatesiemercoach.com
thecurlyduo.com *.thecurlyduo.com
tjkjw5.net *.tjkjw5.net
ufc.one *.ufc.one
ultralinen.com *.ultralinen.com
unif.live *.unif.live
uniternation.com *.uniternation.com
urlart.com *.urlart.com
vansnorges.com *.vansnorges.com
whstoneinv.com *.whstoneinv.com
wumjr930o9k5.com *.wumjr930o9k5.com