Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=kulturkreis-unna.de
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 02, 2026
Valid Until
August 31, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
61:43:34:DE:1B:0E:10:C7:14:C3:43:83:6A:CF:CC:40:86:1D:37:18:F0:08:C8:B3:BF:D1:A3:25:48:81:0C:1A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
69mm.it *.69mm.it *.access.69mm.it *.analytics.69mm.it *.anyconnect.69mm.it *.apps.69mm.it *.auth.69mm.it *.chart.69mm.it *.cloud.69mm.it *.cloudapp.69mm.it *.connect.69mm.it *.dashboard.69mm.it *.database.69mm.it *.db.69mm.it *.demo.69mm.it *.desktopstudent.69mm.it *.dev.69mm.it *.etax.69mm.it *.gestordereseteo.69mm.it *.hostmaster.69mm.it *.imap.69mm.it *.labvirtual.69mm.it *.mail.69mm.it *.metric.69mm.it *.metrics.69mm.it *.mx.69mm.it *.mx001.69mm.it *.notexistsapp.69mm.it *.online.69mm.it *.owa.69mm.it *.phpmyadmin.69mm.it *.portal.69mm.it *.rds.69mm.it *.rdwa.69mm.it *.rdweb.69mm.it *.remote.69mm.it *.report.69mm.it *.root.69mm.it *.secure.69mm.it *.smis.69mm.it *.sslvpn.69mm.it *.staging.69mm.it *.studentsvpn.69mm.it *.superset.69mm.it *.supersets.69mm.it *.uat.69mm.it *.vdi.69mm.it *.virtualstudent.69mm.it *.vpnssl.69mm.it *.webmail.69mm.it *.webvpn.69mm.it *.workspace.69mm.it

Other domains in certificate

*.dev.hotelangel.com hotelangel.com *.hotelangel.com *.mail2.hotelangel.com *.www.hotelangel.com
kulturkreis-unna.de *.kulturkreis-unna.de *.magento.kulturkreis-unna.de *.mail.kulturkreis-unna.de *.ns1.kulturkreis-unna.de *.secure.kulturkreis-unna.de *.sitemaps.kulturkreis-unna.de *.staging.kulturkreis-unna.de
*.app.overy.it *.backend.overy.it overy.it *.overy.it *.staging.overy.it *.whatsappre.overy.it
*.argo.spiaggia.com *.campin.spiaggia.com *.chitarrad.spiaggia.com *.hostmaster.spiaggia.com *.in.spiaggia.com *.leads.spiaggia.com *.mail2.spiaggia.com spiaggia.com *.spiaggia.com *.tindari.spiaggia.com *.visual.spiaggia.com *.wee.spiaggia.com *.workflow.spiaggia.com
*.sitemaps.vigrow.com vigrow.com *.vigrow.com *.www.vigrow.com