76/100 SECURITY SCORE

Certificate Information

Subject
CN=egung.de
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 07, 2026
Valid Until
June 05, 2026 61 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7A:62:D0:F7:AD:B5:9C:57:24:83:82:23:3F:29:D7:E4:21:32:F7:E8:AE:59:E6:2A:1B:A1:58:F4:E3:79:CE:B4
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
thefutureis.digital *.thefutureis.digital *.1.thefutureis.digital *.1157.thefutureis.digital *.ad.thefutureis.digital *.af-south-1.thefutureis.digital *.ap-northeast-1.thefutureis.digital *.ap-northeast-2.thefutureis.digital *.ap-northeast-3.thefutureis.digital *.app.thefutureis.digital *.br.thefutureis.digital *.ca-central-1.thefutureis.digital *.cdn-staging.thefutureis.digital *.cdn-v1.thefutureis.digital *.chattenmetvreemden.thefutureis.digital *.compute-1.thefutureis.digital *.compute-search.thefutureis.digital *.core.thefutureis.digital *.dashboards.thefutureis.digital *.doujin-adp.thefutureis.digital *.ehealth.thefutureis.digital *.es.thefutureis.digital *.eu-west-3.thefutureis.digital *.explorer.thefutureis.digital *.geo.thefutureis.digital *.gl.thefutureis.digital *.gw.thefutureis.digital *.ha.thefutureis.digital *.homebrew.thefutureis.digital *.importer.thefutureis.digital *.jba.thefutureis.digital *.lamp.thefutureis.digital *.limit.thefutureis.digital *.macs.thefutureis.digital *.map.thefutureis.digital *.mariners.thefutureis.digital *.members.thefutureis.digital *.nns2229.thefutureis.digital *.ns128.thefutureis.digital *.ns129.thefutureis.digital *.ns137.thefutureis.digital *.ns1testweb8.thefutureis.digital *.ns25.thefutureis.digital *.ns77.thefutureis.digital *.nswebct5.thefutureis.digital *.optimize.thefutureis.digital *.pets.thefutureis.digital *.rds.thefutureis.digital *.research.thefutureis.digital *.sa-east-1.thefutureis.digital *.securitypapers.thefutureis.digital *.selectexams.thefutureis.digital *.server.thefutureis.digital *.sessions.thefutureis.digital *.us-gov-east-1.thefutureis.digital *.v-staging.thefutureis.digital *.v.thefutureis.digital *.v1.thefutureis.digital *.view.thefutureis.digital *.ww31.thefutureis.digital

Other domains in certificate

egung.de *.egung.de *.webbe.egung.de
familysearch.co *.familysearch.co
*.apmx3.googlemaiil.com *.aspmx2.googlemaiil.com *.aspmx3.googlemaiil.com *.aspmx5.googlemaiil.com googlemaiil.com *.googlemaiil.com *.mail.googlemaiil.com *.ww38.googlemaiil.com
imobilie.de *.imobilie.de
instrumentation.com.au *.instrumentation.com.au
jeandriscoll.com *.jeandriscoll.com *.random.jeandriscoll.com
merchanttranact.com *.merchanttranact.com *.westfield.merchanttranact.com
pregnancies.de *.pregnancies.de
unimax.sk *.unimax.sk
webshere.cz *.webshere.cz