Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=akadir.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
27:08:B0:A0:E8:1A:46:4E:85:14:5A:57:9A:34:85:9C:EE:D6:4B:23:C8:94:F2:AB:76:93:C7:36:F4:8D:5F:98
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
akadir.com *.akadir.com *.crm.akadir.com

Other domains in certificate

agentown.xyz *.agentown.xyz *.app.agentown.xyz *.kwid9.agentown.xyz *.o1ghs.agentown.xyz *.otgeamp7tf.agentown.xyz *.z4gbs.agentown.xyz
alashari.com *.alashari.com *.api.alashari.com *.blog.alashari.com *.crm.alashari.com *.demo.alashari.com *.ww16.alashari.com
*.api.geniet.com *.beta.geniet.com *.cms-front.geniet.com *.crm.geniet.com geniet.com *.geniet.com *.hostmaster.geniet.com *.sitemaps.geniet.com *.test.geniet.com
*.auth.gogo77.bond *.beta.gogo77.bond gogo77.bond *.gogo77.bond *.hostmaster.gogo77.bond *.old.gogo77.bond *.otc.gogo77.bond
*.17.hqhiphop.net *.806.hqhiphop.net *.airflow.hqhiphop.net *.alabama.hqhiphop.net *.ambtenaren.hqhiphop.net *.anywhere.hqhiphop.net *.aoss.hqhiphop.net *.atlas.hqhiphop.net *.auth.hqhiphop.net *.belspo.hqhiphop.net *.cisco.hqhiphop.net *.clientesvpn.hqhiphop.net *.connect.hqhiphop.net *.cpcalendars.hqhiphop.net *.cpcontacts.hqhiphop.net *.cust29.hqhiphop.net *.dialup.hqhiphop.net *.digital.hqhiphop.net *.enigdocument.hqhiphop.net hqhiphop.net *.hqhiphop.net *.hrfl.hqhiphop.net *.inbound.hqhiphop.net *.ksz.hqhiphop.net *.ombudsman-pensioenen.hqhiphop.net *.polizei.hqhiphop.net *.qokvthfklooa.hqhiphop.net *.smtpauth.hqhiphop.net *.supremeadministrativecourt.hqhiphop.net *.tarifsocial.hqhiphop.net *.uy.hqhiphop.net *.vpn3.hqhiphop.net *.vpnssl.hqhiphop.net *.z-log.hqhiphop.net
*.beta.isaam.com *.crm.isaam.com isaam.com *.isaam.com *.ww25.isaam.com
*.amp.localxh2.com *.comzh.localxh2.com *.cz.localxh2.com *.fr.localxh2.com *.hi.localxh2.com *.jp.localxh2.com *.ko.localxh2.com localxh2.com *.localxh2.com *.pl.localxh2.com *.pt.localxh2.com *.ru.localxh2.com *.sv.localxh2.com *.tr.localxh2.com *.vi.localxh2.com *.zh.localxh2.com