Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hotelfes.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 23, 2026
Valid Until
May 24, 2026
44 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2F:EA:2F:8A:71:C5:25:74:5A:72:80:5D:9A:CC:39:52:AC:D6:D7:D3:5E:B8:71:58:1F:9D:BA:1A:B0:FC:BA:5B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
hotelfes.com
*.hotelfes.com
*.demo.hotelfes.com
966538a.buzz
*.966538a.buzz
*.966538com-lohm5.966538a.buzz
big777.win
*.big777.win
*.w-hqapp.big777.win
craftstudio.net
*.craftstudio.net
*.extranet.craftstudio.net
*.backup.explorezagreb.com
explorezagreb.com
*.explorezagreb.com
*.admin.kachavia.com
*.analytics.kachavia.com
*.analyze.kachavia.com
*.api.kachavia.com
*.app.kachavia.com
*.argo.kachavia.com
*.auth.kachavia.com
*.backend.kachavia.com
*.backoffice.kachavia.com
*.bi-dev.kachavia.com
*.bi.kachavia.com
*.blog.kachavia.com
*.bot.kachavia.com
*.cabinet.kachavia.com
*.chart.kachavia.com
*.ci-test.kachavia.com
*.cicd.kachavia.com
*.client.kachavia.com
*.cloud.kachavia.com
*.dash.kachavia.com
*.dashboard.kachavia.com
*.dashs.kachavia.com
*.data.kachavia.com
*.demo.kachavia.com
*.dev.kachavia.com
*.development.kachavia.com
*.gtrcpintranet.kachavia.com
*.jenkins-poc.kachavia.com
kachavia.com
*.kachavia.com
*.kyhvomarketing.kachavia.com
*.marketing.kachavia.com
*.metric.kachavia.com
*.metrics.kachavia.com
*.msk.kachavia.com
*.odbafjenkins-poc.kachavia.com
*.orkflow.kachavia.com
*.pipeline-beta.kachavia.com
*.pipeline.kachavia.com
*.portal.kachavia.com
*.preprod-agent.kachavia.com
*.preview-bot.kachavia.com
*.rd.kachavia.com
*.rdweb.kachavia.com
*.redash.kachavia.com
*.remote.kachavia.com
*.shop.kachavia.com
*.smtp.kachavia.com
*.stg.kachavia.com
*.store.kachavia.com
*.superset-qa.kachavia.com
*.superset.kachavia.com
*.supersets.kachavia.com
*.testing.kachavia.com
*.ukroucicd.kachavia.com
*.uwbdabot.kachavia.com
*.visual.kachavia.com
*.vpn.kachavia.com
*.workflow.kachavia.com
*.www.kachavia.com
*.app.massbionics.com
*.dev.massbionics.com
massbionics.com
*.massbionics.com
*.com.matchleap.com
matchleap.com
*.matchleap.com
*.local.permablitzhawaii.com
permablitzhawaii.com
*.permablitzhawaii.com
*.sitemaps.wisevogue.com
wisevogue.com
*.wisevogue.com
Other domains in certificate