Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=zstkl.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 01, 2026
Valid Until
July 30, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:B2:73:56:DB:65:B5:A6:DD:9E:ED:91:ED:1B:AF:CB:53:61:9B:1D:84:AD:29:C9:EA:8D:53:F9:8B:BD:A9:16
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
smileyangle.com
*.smileyangle.com
*.m.smileyangle.com
*.sitemap.smileyangle.com
011566.co
*.011566.co
011588.co
*.011588.co
bonplansastuces.fr
*.bonplansastuces.fr
fitnessnurturelink.club
*.fitnessnurturelink.club
giardiniere.com
*.giardiniere.com
*.hostmaster.giardiniere.com
*.mail2.giardiniere.com
*.supersets.giardiniere.com
*.visual.giardiniere.com
*.gitlab.lawnboxes.com
lawnboxes.com
*.lawnboxes.com
loghomes.in
*.loghomes.in
*.m.loghomes.in
*.mta-sts.loghomes.in
*.www.loghomes.in
metaversetraining.it
*.metaversetraining.it
musquyqhaway.com
*.musquyqhaway.com
*.random.musquyqhaway.com
*.app.newbearbull.com
newbearbull.com
*.newbearbull.com
*.random.newbearbull.com
nutrimedics.com.au
*.nutrimedics.com.au
*.random.nutrimedics.com.au
*.ww25.nutrimedics.com.au
*.cpanel.xn--dekorasyonrnleri-szbb.com
*.cpcalendars.xn--dekorasyonrnleri-szbb.com
*.ftp.xn--dekorasyonrnleri-szbb.com
*.gitlab.xn--dekorasyonrnleri-szbb.com
*.mail.xn--dekorasyonrnleri-szbb.com
*.new.xn--dekorasyonrnleri-szbb.com
*.owa.xn--dekorasyonrnleri-szbb.com
*.remote.xn--dekorasyonrnleri-szbb.com
*.vpn.xn--dekorasyonrnleri-szbb.com
*.webdisk.xn--dekorasyonrnleri-szbb.com
*.webmail.xn--dekorasyonrnleri-szbb.com
*.whm.xn--dekorasyonrnleri-szbb.com
xn--dekorasyonrnleri-szbb.com
*.xn--dekorasyonrnleri-szbb.com
*.0.zstkl.com
*.1.zstkl.com
*.3.zstkl.com
*.4.zstkl.com
*.a.zstkl.com
*.admin.zstkl.com
*.bllxmx.zstkl.com
*.cbh.zstkl.com
*.d.zstkl.com
*.e.zstkl.com
*.g.zstkl.com
*.hgg.zstkl.com
*.j.zstkl.com
*.jez.zstkl.com
*.jnnvxl.zstkl.com
*.jyy.zstkl.com
*.k.zstkl.com
*.l.zstkl.com
*.mej.zstkl.com
*.mrs.zstkl.com
*.n.zstkl.com
*.o.zstkl.com
*.p.zstkl.com
*.piwe.zstkl.com
*.q.zstkl.com
*.rr7.zstkl.com
*.s.zstkl.com
*.t.zstkl.com
*.t94.zstkl.com
*.u.zstkl.com
*.v.zstkl.com
*.w.zstkl.com
*.www.zstkl.com
*.x.zstkl.com
*.y.zstkl.com
zstkl.com
*.zstkl.com
Other domains in certificate