hogum
vasiljevski.com

vasiljevski.com security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

83risk

Critical

Exposed services or known CVEs need attention now.

1Critical
2High
5Medium
2Low
2Info
Collected 7.5sfrom cache
  1. Certificate Transparency
  2. DNS resolution1
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs17
  6. Registration
  7. DNS posture2
  8. Email authentication1
  9. Certificate
  10. Security headers2
  11. Archived URLs
  12. Analysis12
  • noteCertificate Transparency did not complete (HTTP 502). Results below are partial.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
final https://www.vasiljevski.com/status 200time 2984msstack cloudflare
  • http:// redirects to https://
  • Strict-Transport-Security
  • Content-Security-Policy
  • Clickjacking protection
    SAMEORIGIN
  • X-Content-Type-Options
    nosniff
  • Referrer-Policy
  • Permissions-Policyoptional
  • security.txt publishedoptional — tells researchers where to report bugs
  • Receives mail via 1 server
  • !SPFends in ~all
    v=spf1 a mx include:websitewelcome.com ~all
  • DMARC
    no record
  • !MTA-STSinbound mail can be downgraded to plaintext
  • Registered with GoDaddy.com, LLC16.9 years old
  • Registration expiry2951 days
    2034-10-06
  • Transfer lock
    client delete prohibited, client renew prohibited, client transfer prohibited, client update prohibited
  • 2 nameservers at registry
AddressPortsCVEsEdgeNetwork
108.167.161.53
21225380110143443465+9
34direct
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.