hogum
fksa.org

fksa.org security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

89risk

Critical

Exposed services or known CVEs need attention now.

1Critical
3High
5Medium
4Low
2Info
Collected 13.7sfrom cache
  1. Certificate Transparency
  2. DNS resolution1
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs4
  6. Registration
  7. DNS posture2
  8. Email authentication0
  9. Certificate
  10. Security headers1
  11. Archived URLs
  12. Analysis15
  • noteCertificate Transparency did not complete (HTTP 429). Results below are partial.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
final https://fksa.org/status 200time 1004msstack cloudflare · vBulletin 3.8.11
  • http:// redirects to https://
  • Strict-Transport-Security
    max-age=31536000, max-age=31536000
  • Content-Security-Policy
  • Clickjacking protection
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policyoptional
  • security.txt publishedoptional — tells researchers where to report bugs
  • Cookie X_CACHE_KEY
    no Secure · no HttpOnly · no SameSite
  • Receives mail via 2 servers
  • SPF
    no record
  • DMARC
    no record
  • !MTA-STSinbound mail can be downgraded to plaintext
  • Registered with GoDaddy.com, LLC24.6 years old
  • Registration expiry867 days
    2029-01-21
  • Transfer lock
    client delete prohibited, client renew prohibited, client transfer prohibited, client update prohibited
  • 2 nameservers at registry
AddressPortsCVEsEdgeNetwork
134.209.69.164
22804433306
12direct
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.