kzawag.com security report
Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.
77risk
Critical
Exposed services or known CVEs need attention now.
1Critical
0High
6Medium
6Low
1Info
Collected 5.3sfrom cache
- Certificate Transparency3
- DNS resolution3
- Network ownership0
- CDN / WAF detection0
- Exposed ports & CVEs14
- Registration
- DNS posture1
- Email authentication2
- Certificate
- Security headers0
- Archived URLs
- Analysis14
- noteCertificate inspection is unavailable in this runtime.
- noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
- noteCDN/WAF detection is unavailable in this runtime.
final https://kzawag.com/status 200time 969msstack cloudflare
- ✓http:// redirects to https://
- ✗Strict-Transport-Security
- ✗Content-Security-Policy
- ✗Clickjacking protection
- ✗X-Content-Type-Options
- ✗Referrer-Policy
- –Permissions-Policyoptional
- –security.txt publishedoptional — tells researchers where to report bugs
- ✓Cookie PHPSESSIDSecure · HttpOnly · SameSite=none
- ✓Receives mail via 1 server
- !SPFends in ?allv=spf1 a mx a:kzawag.com ip4:163.172.105.205 ip4:163.172.105.205 ip4:163.172.105.205 ip6:fe80::ec4:7aff:fe0e:99e8 ?all
- !DMARCp=nonev=DMARC1; pct=100; ruf=mailto:postmaster@kzawag.com; rua=mailto:postmaster@zawag.org; p=none
- !MTA-STSinbound mail can be downgraded to plaintext
- !DNSSECanswers can be forged
- ✓CAA0 issuewild "letsencrypt.org"
- ✓IPv6 (AAAA)
- ✓1 nameserver
- ✓Registered with NameCheap, Inc.12.9 years old
- !Registration expiry51 days2026-10-28
- ✓Transfer lockclient transfer prohibited
- ✓2 nameservers at registry
| Address | Ports | CVEs | Edge | Network |
|---|---|---|---|---|
| 163.172.105.205 | 22255380143443465587+6 | 0 | direct | — |
Archived URLs
Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.