Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=senfall.de
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 31, 2025
Valid Until
March 31, 2026 45 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
89:66:C8:95:3B:E4:E1:58:3C:68:85:B2:13:DA:2F:2A:D1:5E:E1:7E:15:7C:8D:5B:8F:8C:11:0F:D5:3A:9B:7E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
boostabrain.info *.boostabrain.info *.ww25.boostabrain.info *.ww38.boostabrain.info

Other domains in certificate

adjaranet.live *.adjaranet.live *.cinemania.adjaranet.live *.movies.adjaranet.live *.random.adjaranet.live *.static.adjaranet.live
amazon9838.vip *.amazon9838.vip *.ww38.amazon9838.vip *.www.amazon9838.vip
cerascree.de *.cerascree.de
*.agency2.comiendoconpablo.com comiendoconpablo.com *.comiendoconpablo.com *.sitemap.comiendoconpablo.com *.vpn.comiendoconpablo.com
dashboardcoinbase.com *.dashboardcoinbase.com *.ww25.dashboardcoinbase.com
demoniscans.org *.demoniscans.org
*.5abc4c81-cb80-4e90-acea-fa07b70350fe.donsanddivas.com donsanddivas.com *.donsanddivas.com *.rustore.donsanddivas.com *.themes.donsanddivas.com *.ww17.donsanddivas.com *.ww38.donsanddivas.com
drstudiofotograficzne.pl *.drstudiofotograficzne.pl
*.apps1.faccini.com *.auth.faccini.com *.azure.faccini.com *.chaveiro.faccini.com faccini.com *.faccini.com *.firewall.faccini.com *.office2.faccini.com *.portal.faccini.com *.rds1.faccini.com *.remoteapp2.faccini.com *.sg.faccini.com *.ssl.faccini.com *.ww25.faccini.com *.ww38.faccini.com
*.gateway.kurka.com *.info.kurka.com kurka.com *.kurka.com *.secure.kurka.com *.secureaccess.kurka.com *.vpn.kurka.com
myhees.de *.myhees.de
play-escape-from-tarkov.com *.play-escape-from-tarkov.com *.random.play-escape-from-tarkov.com *.sitemaps.play-escape-from-tarkov.com
promocodesbook.com *.promocodesbook.com
rareantiqueandart.com *.rareantiqueandart.com
search-trips-planner.com *.search-trips-planner.com
senfall.de *.senfall.de
sephore.de *.sephore.de
shinpadsofficial.com *.shinpadsofficial.com
superdrol-au.com *.superdrol-au.com
swapbet365.eu *.swapbet365.eu
ullappopken.de *.ullappopken.de
wslbusch.de *.wslbusch.de
wwwjameda.de *.wwwjameda.de
yalta-intim.com *.yalta-intim.com
zufo.studio *.zufo.studio