76/100 SECURITY SCORE

Certificate Information

Subject
CN=kennenlernen.ch
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 23, 2026
Valid Until
July 22, 2026 69 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B1:6E:48:45:39:B4:89:6F:04:5F:5C:35:C4:95:27:D5:2E:65:D7:64:B2:15:17:54:D8:7F:16:BD:2E:0B:36:34
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
grssuplements10.store *.grssuplements10.store *.d4hnotox9q.grssuplements10.store

Other domains in certificate

68068.co *.68068.co *.cc.68068.co
*.account.amabrush.at *.admin.amabrush.at *.agent.amabrush.at *.alpha-kafka.amabrush.at amabrush.at *.amabrush.at *.analytic-beta.amabrush.at *.api.amabrush.at *.autoconfig.amabrush.at *.autodiscover.amabrush.at *.blog.amabrush.at *.cms.amabrush.at *.crypto.amabrush.at *.data.amabrush.at *.dev.amabrush.at *.development.amabrush.at *.emv1.amabrush.at *.erp.amabrush.at *.finance.amabrush.at *.hpalex.amabrush.at *.login.amabrush.at *.mail.amabrush.at *.mobile.amabrush.at *.my.amabrush.at *.portal.amabrush.at *.rd.amabrush.at *.sitemap.amabrush.at *.springboot.amabrush.at *.sslvpn.amabrush.at *.uat-data.amabrush.at *.users.amabrush.at *.vpn.amabrush.at *.web.amabrush.at *.webmail.amabrush.at *.work.amabrush.at *.workflow-beta.amabrush.at *.www.amabrush.at
denshidai.com *.denshidai.com *.denshidai.denshidai.com *.fetish.denshidai.com *.peep.denshidai.com *.tuma.denshidai.com
flarza.store *.flarza.store *.sitemap.flarza.store
imprssion.de *.imprssion.de
*.admin.kennenlernen.ch *.api.kennenlernen.ch *.app.kennenlernen.ch *.backend.kennenlernen.ch *.beta.kennenlernen.ch *.crm.kennenlernen.ch *.da.kennenlernen.ch *.dashboard.kennenlernen.ch *.demo.kennenlernen.ch *.forum.kennenlernen.ch *.forums.kennenlernen.ch *.intelligence.kennenlernen.ch kennenlernen.ch *.kennenlernen.ch *.m.kennenlernen.ch *.mobile.kennenlernen.ch *.new.kennenlernen.ch *.old.kennenlernen.ch *.reporting.kennenlernen.ch *.shop.kennenlernen.ch *.staging.kennenlernen.ch *.superset.kennenlernen.ch *.test.kennenlernen.ch *.wiki.kennenlernen.ch *.www.kennenlernen.ch
libertyland.sbs *.libertyland.sbs *.mail.libertyland.sbs *.ww16.libertyland.sbs *.ww2.libertyland.sbs *.www.libertyland.sbs
monjardin.bio *.monjardin.bio
*.www.zzawin1.com zzawin1.com *.zzawin1.com