Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=gartenschilder.de
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 21, 2026
Valid Until
August 19, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B0:4C:F2:FF:7B:01:7F:26:F8:66:E6:01:57:F1:76:95:70:45:28:B0:78:13:7D:88:D0:6B:AA:80:9C:CB:6F:C3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
realworldbenefits.com
*.realworldbenefits.com
*.1769cb1b-d5da-44e8-98a0-99f86750c69c.realworldbenefits.com
*.admin.realworldbenefits.com
*.app.realworldbenefits.com
*.asdf.realworldbenefits.com
*.assets.realworldbenefits.com
*.cms.realworldbenefits.com
*.demo.realworldbenefits.com
*.dev.realworldbenefits.com
*.intranet.realworldbenefits.com
*.mail.realworldbenefits.com
*.marketing.realworldbenefits.com
*.members.realworldbenefits.com
*.portal.realworldbenefits.com
*.pv6xlt.realworldbenefits.com
*.secure.realworldbenefits.com
*.shop.realworldbenefits.com
*.staging.realworldbenefits.com
*.store.realworldbenefits.com
*.ubqddapp.realworldbenefits.com
*.v1.realworldbenefits.com
*.vpn.realworldbenefits.com
*.web.realworldbenefits.com
*.wtojaedg.realworldbenefits.com
*.www.realworldbenefits.com
*.admin.cricktime.net
*.aging.cricktime.net
*.app.cricktime.net
*.blog.cricktime.net
*.cpanel.cricktime.net
cricktime.net
*.cricktime.net
*.m.cricktime.net
*.notexistsww5.cricktime.net
*.remote.cricktime.net
*.staging.cricktime.net
*.superset-staging.cricktime.net
*.superset.cricktime.net
*.vpn.cricktime.net
*.ww25.cricktime.net
*.ww3.cricktime.net
*.ww5.cricktime.net
*.ww6.cricktime.net
*.www.cricktime.net
gartenschilder.de
*.gartenschilder.de
*.anyconnect.mutt.it
*.api.mutt.it
*.app.mutt.it
*.applications.mutt.it
*.apps.mutt.it
*.ar.mutt.it
*.asp.mutt.it
*.backend.mutt.it
*.bi.mutt.it
*.cisapp.mutt.it
*.clientesvpn.mutt.it
*.database.mutt.it
*.dev.mutt.it
*.email.mutt.it
*.hostmaster.mutt.it
*.imap.mutt.it
*.mail.mutt.it
*.metrics.mutt.it
mutt.it
*.mutt.it
*.pma.mutt.it
*.pop.mutt.it
*.pop3.mutt.it
*.rdp.mutt.it
*.remote.mutt.it
*.reports.mutt.it
*.staging.mutt.it
*.superset.mutt.it
*.supersets.mutt.it
*.vpn-ext.mutt.it
*.vpn.mutt.it
*.vpn5a.mutt.it
*.vpnadm.mutt.it
*.vpnapac.mutt.it
*.vpngate.mutt.it
*.vpnpa.mutt.it
*.vpntoj.mutt.it
*.xapp.mutt.it
nydollsclub.com
*.nydollsclub.com
*.ww16.nydollsclub.com
*.ww25.nydollsclub.com
*.ww38.nydollsclub.com
Other domains in certificate