Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=akadir.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
27:08:B0:A0:E8:1A:46:4E:85:14:5A:57:9A:34:85:9C:EE:D6:4B:23:C8:94:F2:AB:76:93:C7:36:F4:8D:5F:98
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
akadir.com
*.akadir.com
*.crm.akadir.com
agentown.xyz
*.agentown.xyz
*.app.agentown.xyz
*.kwid9.agentown.xyz
*.o1ghs.agentown.xyz
*.otgeamp7tf.agentown.xyz
*.z4gbs.agentown.xyz
alashari.com
*.alashari.com
*.api.alashari.com
*.blog.alashari.com
*.crm.alashari.com
*.demo.alashari.com
*.ww16.alashari.com
*.api.geniet.com
*.beta.geniet.com
*.cms-front.geniet.com
*.crm.geniet.com
geniet.com
*.geniet.com
*.hostmaster.geniet.com
*.sitemaps.geniet.com
*.test.geniet.com
*.auth.gogo77.bond
*.beta.gogo77.bond
gogo77.bond
*.gogo77.bond
*.hostmaster.gogo77.bond
*.old.gogo77.bond
*.otc.gogo77.bond
*.17.hqhiphop.net
*.806.hqhiphop.net
*.airflow.hqhiphop.net
*.alabama.hqhiphop.net
*.ambtenaren.hqhiphop.net
*.anywhere.hqhiphop.net
*.aoss.hqhiphop.net
*.atlas.hqhiphop.net
*.auth.hqhiphop.net
*.belspo.hqhiphop.net
*.cisco.hqhiphop.net
*.clientesvpn.hqhiphop.net
*.connect.hqhiphop.net
*.cpcalendars.hqhiphop.net
*.cpcontacts.hqhiphop.net
*.cust29.hqhiphop.net
*.dialup.hqhiphop.net
*.digital.hqhiphop.net
*.enigdocument.hqhiphop.net
hqhiphop.net
*.hqhiphop.net
*.hrfl.hqhiphop.net
*.inbound.hqhiphop.net
*.ksz.hqhiphop.net
*.ombudsman-pensioenen.hqhiphop.net
*.polizei.hqhiphop.net
*.qokvthfklooa.hqhiphop.net
*.smtpauth.hqhiphop.net
*.supremeadministrativecourt.hqhiphop.net
*.tarifsocial.hqhiphop.net
*.uy.hqhiphop.net
*.vpn3.hqhiphop.net
*.vpnssl.hqhiphop.net
*.z-log.hqhiphop.net
*.beta.isaam.com
*.crm.isaam.com
isaam.com
*.isaam.com
*.ww25.isaam.com
*.amp.localxh2.com
*.comzh.localxh2.com
*.cz.localxh2.com
*.fr.localxh2.com
*.hi.localxh2.com
*.jp.localxh2.com
*.ko.localxh2.com
localxh2.com
*.localxh2.com
*.pl.localxh2.com
*.pt.localxh2.com
*.ru.localxh2.com
*.sv.localxh2.com
*.tr.localxh2.com
*.vi.localxh2.com
*.zh.localxh2.com
Other domains in certificate