Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kgnp.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 29, 2026
Valid Until
April 29, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
08:D8:EF:FB:EB:20:52:11:20:55:A8:57:D2:71:0C:B9:DB:5F:6E:B5:D3:58:11:EE:BC:31:30:22:4C:A3:6B:01
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
arisconcept.com
*.arisconcept.com
239724.me
*.239724.me
240380.me
*.240380.me
24066.locker
*.24066.locker
557305.me
*.557305.me
56501.loan
*.56501.loan
56575.loan
*.56575.loan
568715.me
*.568715.me
572916.top
*.572916.top
63xpass.com
*.63xpass.com
97970.pizza
*.97970.pizza
999lottery.com
*.999lottery.com
abcmovies.tv
*.abcmovies.tv
aiagentsavvy.com
*.aiagentsavvy.com
aiagentschain.com
*.aiagentschain.com
bearcreekmensgolfclub.com
*.bearcreekmensgolfclub.com
bearnola.com
*.bearnola.com
dallian.com
*.dallian.com
*.50.dxxs.cc
dxxs.cc
*.dxxs.cc
economie-gabon.com
*.economie-gabon.com
eofbtwuh.biz
*.eofbtwuh.biz
ferizi2a.com
*.ferizi2a.com
flipws.com
*.flipws.com
flujodel.com
*.flujodel.com
fromgoal.com
*.fromgoal.com
gamekclub.com
*.gamekclub.com
ghz.de
*.ghz.de
*.ww1.ghz.de
giredo.com
*.giredo.com
goaljet.com
*.goaljet.com
goodgrantshub.com
*.goodgrantshub.com
gotymebankph.com
*.gotymebankph.com
helpouramerica.com
*.helpouramerica.com
hentai-anime.tv
*.hentai-anime.tv
kgnp.xyz
*.kgnp.xyz
*.smtp3.kgnp.xyz
libertybellvillage.com
*.libertybellvillage.com
*.compso2link.likeypie.com
likeypie.com
*.likeypie.com
*.pso2link.likeypie.com
lueirltoy.com
*.lueirltoy.com
lumiere2010.org
*.lumiere2010.org
megabiotics.com
*.megabiotics.com
*.ftp.mulherespeladas.vip
mulherespeladas.vip
*.mulherespeladas.vip
runonce.com
*.runonce.com
wk9dog.com
*.wk9dog.com
Other domains in certificate