76/100 SECURITY SCORE

Certificate Information

Subject
CN=madih.de
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 25, 2026
Valid Until
June 23, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
10:F7:C7:37:3C:F0:A2:B4:16:65:E7:09:E5:8F:03:2C:6F:23:C9:93:90:9E:43:E9:65:24:FD:71:BF:6D:07:2E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
subsstack.com *.subsstack.com *.autosaveisforwimps.subsstack.com *.evilwitches.subsstack.com *.ilcdailyswing.subsstack.com *.jdrakephd.subsstack.com *.marytabor.subsstack.com *.ww38.subsstack.com

Other domains in certificate

*.aqua.crete.com.au crete.com.au *.crete.com.au
emmi.au *.emmi.au
fullswinggolf.com.au *.fullswinggolf.com.au *.wildcard.fullswinggolf.com.au *.ww11.fullswinggolf.com.au *.ww16.fullswinggolf.com.au
*.comwww.gaokao100.com gaokao100.com *.gaokao100.com *.random.gaokao100.com *.www.gaokao100.com
hsck5.net *.hsck5.net *.ww25.hsck5.net
*.energy.idomino.com idomino.com *.idomino.com *.ww25.idomino.com
*.admin.jayaslot28.xyz *.app.jayaslot28.xyz jayaslot28.xyz *.jayaslot28.xyz *.random.jayaslot28.xyz *.sitemap.jayaslot28.xyz *.sitemaps.jayaslot28.xyz *.usqrtsitemaps.jayaslot28.xyz *.vpn.jayaslot28.xyz *.wildcard.jayaslot28.xyz *.ww38.jayaslot28.xyz *.www.jayaslot28.xyz
madih.de *.madih.de
qrk136o8fo.net *.qrk136o8fo.net
*.11.sbjsc1.top *.12.sbjsc1.top *.13.sbjsc1.top *.14.sbjsc1.top *.15.sbjsc1.top *.20.sbjsc1.top *.21.sbjsc1.top *.dev.sbjsc1.top sbjsc1.top *.sbjsc1.top
*.comwww.sillas.com *.de.sillas.com sillas.com *.sillas.com
superlive.fun *.superlive.fun *.tv.superlive.fun
thejennifermack.com *.thejennifermack.com
*.admin.thevoices.it *.data.thevoices.it *.demo.thevoices.it *.intel.thevoices.it *.staging.thevoices.it *.superset.thevoices.it *.supersets.thevoices.it thevoices.it *.thevoices.it
ukwallpanel.com *.ukwallpanel.com
*.research.unclemikeyspizza.com unclemikeyspizza.com *.unclemikeyspizza.com *.ww16.unclemikeyspizza.com
*.deals.victoriahome.co *.intel.victoriahome.co *.journey.victoriahome.co *.mail.victoriahome.co *.members.victoriahome.co *.rdweb.victoriahome.co *.sites.victoriahome.co victoriahome.co *.victoriahome.co *.www.victoriahome.co