Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kgs8777.cc
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 30, 2026
Valid Until
August 28, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:ED:47:E7:8A:EE:3D:0B:76:87:DC:E6:CE:FB:C7:F8:83:4F:82:19:96:69:C7:0D:13:D5:24:CB:3D:0F:76:52
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
pod.finance
*.pod.finance
apextravelcenter.live
*.apextravelcenter.live
brindesalianca.net.br
*.brindesalianca.net.br
golapravda.site
*.golapravda.site
incisivevision.com
*.incisivevision.com
kgs8777.cc
*.kgs8777.cc
loinnews.com
*.loinnews.com
lzqux.sbs
*.lzqux.sbs
magic.lat
*.magic.lat
nokakn.gdn
*.nokakn.gdn
olpo.org
*.olpo.org
panadeadiagnostics.com
*.panadeadiagnostics.com
pigav.tv
*.pigav.tv
playvalorant.app
*.playvalorant.app
premiereeventgroup.com
*.premiereeventgroup.com
proweddingconcepts.beauty
*.proweddingconcepts.beauty
punzm.qpon
*.punzm.qpon
qjwa.cc
*.qjwa.cc
shunt.me
*.shunt.me
stomach-cancer-treatment.click
*.stomach-cancer-treatment.click
studiocero2.com
*.studiocero2.com
studiometrodesk.company
*.studiometrodesk.company
studiometrodesk.digital
*.studiometrodesk.digital
suecsindustrialtech.com
*.suecsindustrialtech.com
sugarlandhotelandsuite.com
*.sugarlandhotelandsuite.com
tbwly.qpon
*.tbwly.qpon
tl7dd5.qpon
*.tl7dd5.qpon
togzv.qpon
*.togzv.qpon
tqwni.qpon
*.tqwni.qpon
trustedfitresource.run
*.trustedfitresource.run
txrd.org
*.txrd.org
u4coins.com
*.u4coins.com
ugcai.qpon
*.ugcai.qpon
ugtfq.qpon
*.ugtfq.qpon
unitext.com.br
*.unitext.com.br
v8vj6c.cc
*.v8vj6c.cc
vacationauthority.live
*.vacationauthority.live
vacationeminence.live
*.vacationeminence.live
vacationeureka.live
*.vacationeureka.live
vacationpremier.live
*.vacationpremier.live
vacationprestige.live
*.vacationprestige.live
vacationreliant.live
*.vacationreliant.live
valdof.my
*.valdof.my
valuefitnesshub.run
*.valuefitnesshub.run
verticalfarmltd.com
*.verticalfarmltd.com
Other domains in certificate