Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=akadwadiah.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
44:11:E2:93:1E:C4:37:6B:73:B7:7E:D8:E6:0C:C2:25:38:E5:82:84:A0:23:2C:D4:18:DC:05:56:45:ED:06:59
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
pkay.com
*.pkay.com
*.dev.pkay.com
addida.com
*.addida.com
*.hostmaster.addida.com
*.old.addida.com
*.admin.akadwadiah.com
akadwadiah.com
*.akadwadiah.com
*.app.akadwadiah.com
*.m.akadwadiah.com
*.members.akadwadiah.com
*.staging.akadwadiah.com
archi-id.net
*.archi-id.net
*.squarespace.archi-id.net
avatar.top
*.avatar.top
*.g22y8.avatar.top
*.rczhl.avatar.top
avtosell.com
*.avtosell.com
*.ww16.avtosell.com
conseilinfirmier-saintluc.be
*.conseilinfirmier-saintluc.be
*.cpanel.deepseek-portugues.com
deepseek-portugues.com
*.deepseek-portugues.com
*.ftp.deepseek-portugues.com
earthheartsmith.com
*.earthheartsmith.com
*.h.earthheartsmith.com
*.iptil.earthheartsmith.com
*.qltuh.earthheartsmith.com
encylopedia.com.au
*.encylopedia.com.au
*.dev.ensenar.com
ensenar.com
*.ensenar.com
*.ww38.ensenar.com
*.1llogic.everlast1ng.com
everlast1ng.com
*.everlast1ng.com
*.my.everlast1ng.com
*.wellsky-spd.everlast1ng.com
fubarnews.co.uk
*.fubarnews.co.uk
hako.re
*.hako.re
*.ln.hako.re
huiom.com
*.huiom.com
*.random.huiom.com
*.store.huiom.com
kwantum7.pl
*.kwantum7.pl
*.collective.lemonmedia-verlag.de
*.epub.lemonmedia-verlag.de
lemonmedia-verlag.de
*.lemonmedia-verlag.de
*.link.lemonmedia-verlag.de
*.cc.pghh.bid
pghh.bid
*.pghh.bid
*.citycollection.pmpdigital.com.au
*.imap.pmpdigital.com.au
*.notification.pmpdigital.com.au
pmpdigital.com.au
*.pmpdigital.com.au
*.thriftylink.pmpdigital.com.au
*.autodiscover.the-denticore.com
the-denticore.com
*.the-denticore.com
*.www.the-denticore.com
*.wwww.the-denticore.com
*.m.tsubuyaki.com
tsubuyaki.com
*.tsubuyaki.com
*.intranet.ueberfuehrung.com
ueberfuehrung.com
*.ueberfuehrung.com
usecodeninjahub.com
*.usecodeninjahub.com
xn--9kqx32j.com
*.xn--9kqx32j.com
*.id-02855879293549846.zurichwatches.com
*.test.zurichwatches.com
zurichwatches.com
*.zurichwatches.com
Other domains in certificate