Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=travelcirkus.de
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 25, 2026
Valid Until
September 23, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EA:B2:04:FA:B5:7D:83:C0:52:17:7C:33:F9:54:FB:A2:F9:47:2E:5D:49:FB:F5:D2:F8:1C:18:6C:76:F8:D8:84
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
hashcode.it *.hashcode.it *.api.hashcode.it *.dev.hashcode.it *.intherpro.hashcode.it

Other domains in certificate

*.account.banktrustscore.com *.adm.banktrustscore.com banktrustscore.com *.banktrustscore.com *.dashboard.banktrustscore.com *.home.banktrustscore.com *.imap3.banktrustscore.com *.imap3d.banktrustscore.com *.m.banktrustscore.com *.mail.banktrustscore.com *.search.banktrustscore.com *.webmin.banktrustscore.com
*.admin.contentcollections.com *.api.contentcollections.com contentcollections.com *.contentcollections.com *.dev.contentcollections.com *.sitemap.contentcollections.com *.sitemaps.contentcollections.com *.test.contentcollections.com
*.account.cryptofintech-capital.online *.admin.cryptofintech-capital.online *.analytics.cryptofintech-capital.online *.api.cryptofintech-capital.online cryptofintech-capital.online *.cryptofintech-capital.online *.dev.cryptofintech-capital.online *.gybbgblog.cryptofintech-capital.online *.hop.cryptofintech-capital.online *.internal.cryptofintech-capital.online *.login.cryptofintech-capital.online *.mail.cryptofintech-capital.online *.manage.cryptofintech-capital.online *.prod.cryptofintech-capital.online *.staging.cryptofintech-capital.online *.support.cryptofintech-capital.online *.upport.cryptofintech-capital.online
*.admin.ecospresso.com *.api.ecospresso.com *.app.ecospresso.com *.assets.ecospresso.com *.demo.ecospresso.com ecospresso.com *.ecospresso.com *.mail.ecospresso.com *.random.ecospresso.com *.shop.ecospresso.com *.sitemaps.ecospresso.com *.yh72s1.ecospresso.com
*.dev.northamericanhealth.com *.m.northamericanhealth.com northamericanhealth.com *.northamericanhealth.com
*.admin.onexperience.it *.api.onexperience.it *.app.onexperience.it *.backend.onexperience.it *.hostmaster.onexperience.it *.mx.onexperience.it onexperience.it *.onexperience.it *.pop3.onexperience.it *.rds.onexperience.it *.reporting.onexperience.it
*.app.papergetsheavy.com *.assets.papergetsheavy.com *.backup.papergetsheavy.com *.blog.papergetsheavy.com *.demo.papergetsheavy.com *.dev.papergetsheavy.com papergetsheavy.com *.papergetsheavy.com *.test.papergetsheavy.com *.wwww.papergetsheavy.com
*.met.saozpn.io saozpn.io *.saozpn.io
travelcirkus.de *.travelcirkus.de
*.akademi.wofdex.com *.cmsakademi.wofdex.com *.mail.wofdex.com *.pro.wofdex.com wofdex.com *.wofdex.com