76/100 SECURITY SCORE

Certificate Information

Subject
CN=letithappen.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:9E:CF:43:99:F9:3D:CE:69:1C:6F:49:C9:6A:E9:36:22:45:BC:E9:3E:BA:D7:A2:6E:44:A9:12:2B:97:15:A3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
kkrone.at *.kkrone.at *.9c207b60-2875-464d-adf7-66d258d50f88.kkrone.at *.data.kkrone.at *.docs.kkrone.at *.emv1.kkrone.at *.external.kkrone.at *.intranet.kkrone.at *.public.kkrone.at *.s1.kkrone.at *.service.kkrone.at *.sharepoint.kkrone.at *.sitemap.kkrone.at *.sitemaps.kkrone.at *.ww.kkrone.at

Other domains in certificate

*.32.inkvc.ai inkvc.ai *.inkvc.ai
*.akqxfqtzhisdx.letithappen.org *.api.letithappen.org *.assets.letithappen.org *.cplzuxya.letithappen.org *.dev.letithappen.org *.dhvrypje.letithappen.org *.external.letithappen.org *.gnsqkeuo.letithappen.org *.hjdelpts.letithappen.org *.idsynebx.letithappen.org *.intranet.letithappen.org *.johbwkmd.letithappen.org *.kmwtxexternal.letithappen.org *.kqmvhxns.letithappen.org letithappen.org *.letithappen.org *.lqzmgdtr.letithappen.org *.lxpbuytf.letithappen.org *.m.letithappen.org *.mvstuwfb.letithappen.org *.mvzwfitc.letithappen.org *.my.letithappen.org *.oetsvqzy.letithappen.org *.olbmdunk.letithappen.org *.pgxafbko.letithappen.org *.portal.letithappen.org *.qxjercld.letithappen.org *.ripnkjvc.letithappen.org *.rxpyactv.letithappen.org *.tjnpbolbmdunk.letithappen.org *.twadfsje.letithappen.org *.ucxgcapp.letithappen.org *.vizytqsw.letithappen.org *.vqjgwilx.letithappen.org *.vscjrmvzwfitc.letithappen.org *.wucahxiy.letithappen.org *.xcoyhqbn.letithappen.org *.znmjipkc.letithappen.org
mydesi.pro *.mydesi.pro *.ww38.mydesi.pro
*.autodiscover.oilcorp.com.au *.fuelcorp.oilcorp.com.au oilcorp.com.au *.oilcorp.com.au *.oilcorpfuels.oilcorp.com.au *.thomasnorthcott.oilcorp.com.au *.tomnorthcott.oilcorp.com.au *.ww25.oilcorp.com.au *.ww38.oilcorp.com.au
*.home.oldcrook.com *.hostmaster.oldcrook.com *.localhost.oldcrook.com *.m.oldcrook.com oldcrook.com *.oldcrook.com *.remote.oldcrook.com *.www.oldcrook.com
sppcontest.org *.sppcontest.org
*.api.tantor.io *.apiz.tantor.io *.app.tantor.io *.cred-dev.tantor.io *.darch-dev.tantor.io *.dev.tantor.io *.keycloak.tantor.io *.login.tantor.io *.monitoring.tantor.io tantor.io *.tantor.io *.ui.tantor.io