Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=lampenselt.de
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 18, 2026
Valid Until
June 16, 2026 37 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:84:21:F8:F4:60:31:E3:8B:2D:87:12:21:FB:5F:9F:4E:81:4B:C5:79:6D:9D:15:29:EE:13:14:99:1D:41:42
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
oetickets.at *.oetickets.at *.account.oetickets.at *.admin.oetickets.at *.agent.oetickets.at *.analytic.oetickets.at *.analytics-qa.oetickets.at *.api.oetickets.at *.app.oetickets.at *.bi.oetickets.at *.client.oetickets.at *.customer.oetickets.at *.dashboard.oetickets.at *.dev.oetickets.at *.ead.oetickets.at *.home.oetickets.at *.hotfix.oetickets.at *.intranet.oetickets.at *.kunden.oetickets.at *.m.oetickets.at *.mobile.oetickets.at *.news.oetickets.at *.notexistsadmin.oetickets.at *.portal.oetickets.at *.preview.oetickets.at *.reporting-demo.oetickets.at *.store.oetickets.at *.superset-beta.oetickets.at *.users.oetickets.at

Other domains in certificate

365729.engineer *.365729.engineer
87452.locker *.87452.locker
913153.loan *.913153.loan *.loan.913153.loan
afncv.my *.afncv.my
anresgroup.com *.anresgroup.com
baseballphilliesfanshop.com *.baseballphilliesfanshop.com
be-rubber-products-suppliers-glob-112.sbs *.be-rubber-products-suppliers-glob-112.sbs
beachcubes.de *.beachcubes.de
booststar.co *.booststar.co
bwxtwupd.my *.bwxtwupd.my
deliver2030.org *.deliver2030.org *.orgwww.deliver2030.org *.ww25.deliver2030.org
discoeryplus.com *.discoeryplus.com *.help.discoeryplus.com *.random.discoeryplus.com *.ww25.discoeryplus.com
faspeoplesearch.com *.faspeoplesearch.com *.hostmaster.faspeoplesearch.com *.ww25.faspeoplesearch.com
inkv1.site *.inkv1.site
intertar.de *.intertar.de
*.app.lampenselt.de lampenselt.de *.lampenselt.de
purduescientificliteracyproject.org *.purduescientificliteracyproject.org *.ww38.purduescientificliteracyproject.org
rastuc3m.de *.rastuc3m.de
saintelin-8k.xyz *.saintelin-8k.xyz
sqjbd.srl *.sqjbd.srl
*.girou.tigridy.bet tigridy.bet *.tigridy.bet
*.455638.ug31.com *.guijinshu.ug31.com *.nav.ug31.com *.probiller.ug31.com ug31.com *.ug31.com *.www.ug31.com *.yin.ug31.com