Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=reaktivieren2025.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:17:88:5C:39:5D:3D:D2:68:CE:08:BF:E1:DE:81:9D:14:D5:BB:16:E1:1E:CD:EB:D6:CD:66:B7:C4:AB:A5:C9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
aqvaplus.com
*.aqvaplus.com
*.230.amscott.com
amscott.com
*.amscott.com
*.preprod.amscott.com
*.saratov.amscott.com
autoscout24.click
*.autoscout24.click
*.ww38.autoscout24.click
black888loans.life
*.black888loans.life
*.checkout.black888loans.life
*.ww38.black888loans.life
*.www.black888loans.life
catalogo.biz
*.catalogo.biz
*.www.catalogo.biz
*.app.forever21careers.com
forever21careers.com
*.forever21careers.com
*.marketing.forever21careers.com
*.mx7.forever21careers.com
*.secure.forever21careers.com
*.v1.forever21careers.com
glennvillesentinel.com
*.glennvillesentinel.com
*.wildcard.glennvillesentinel.com
greatsports-enthusiastd.com
*.greatsports-enthusiastd.com
*.ww25.greatsports-enthusiastd.com
*.ww38.greatsports-enthusiastd.com
huidbehandelingen433162.icu
*.huidbehandelingen433162.icu
*.anyconnect.karasuma.com
*.asa.karasuma.com
*.cloudvpn.karasuma.com
*.cpcontacts.karasuma.com
karasuma.com
*.karasuma.com
*.smtp.karasuma.com
*.ssl.karasuma.com
*.webdisk.karasuma.com
linktek.cfd
*.linktek.cfd
*.masha-bwi-facebook.linktek.cfd
*.rts-3060-price.linktek.cfd
macmal.com
*.macmal.com
*.rdweb.macmal.com
meladinha.com
*.meladinha.com
*.wiki.meladinha.com
oppamaen.com
*.oppamaen.com
*.wildcard.oppamaen.com
reaktivieren2025.com
*.reaktivieren2025.com
*.mail.robertorocha.xyz
robertorocha.xyz
*.robertorocha.xyz
*.app.sbpdcl.in
*.bills.sbpdcl.in
*.hargharbijli.sbpdcl.in
sbpdcl.in
*.sbpdcl.in
terafarm.shop
*.terafarm.shop
*.autodiscover.thientruc.com
*.email.thientruc.com
*.members.thientruc.com
thientruc.com
*.thientruc.com
*.webmail.thientruc.com
*.access.tortie.com
*.ftp.tortie.com
tortie.com
*.tortie.com
*.mx.trytheadvice4life.com
trytheadvice4life.com
*.trytheadvice4life.com
*.hd2.vse-chasti-filmov.re
*.hd3.vse-chasti-filmov.re
*.hd4.vse-chasti-filmov.re
vse-chasti-filmov.re
*.vse-chasti-filmov.re
*.vse2.vse-chasti-filmov.re
*.896.zp04.pro
zp04.pro
*.zp04.pro
Other domains in certificate