Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=dakexclusiv.de
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 28, 2026
Valid Until
August 26, 2026 85 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
47:1E:97:74:02:A0:09:3F:51:E5:ED:70:A6:80:CC:57:6F:EB:04:73:4A:EC:32:67:8F:BF:57:5D:7C:20:6F:47
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ibommaexpress.com *.ibommaexpress.com *.ibommamovie24.ibommaexpress.com *.onlineexpress.ibommaexpress.com *.stage.ibommaexpress.com *.sumonsolution.ibommaexpress.com *.testyrecipes.ibommaexpress.com

Other domains in certificate

15096.lgbt *.15096.lgbt
82171.ac *.82171.ac
dakexclusiv.de *.dakexclusiv.de *.m.dakexclusiv.de *.remote.dakexclusiv.de *.vpn.dakexclusiv.de
*.324d2f8f-25f0-4b38-bb24-5bb906c71380.devdevlights.info *.7c8def34-905f-4545-aae7-943ffca01ebd.devdevlights.info *.a.devdevlights.info *.admin.devdevlights.info *.api.devdevlights.info *.app.devdevlights.info *.backup.devdevlights.info *.dashboard.devdevlights.info *.dev.devdevlights.info devdevlights.info *.devdevlights.info *.f9a5fa13-9019-4fef-8e2a-9ccaa02b5624.devdevlights.info *.iekamtbu.devdevlights.info *.mail.devdevlights.info *.mailer.devdevlights.info *.marketing.devdevlights.info *.qa.devdevlights.info *.ro1uhk.devdevlights.info *.secure.devdevlights.info *.staging.devdevlights.info *.stg.devdevlights.info *.v2.devdevlights.info *.web.devdevlights.info
evam.it *.evam.it *.mail.evam.it *.mx.evam.it *.pec.evam.it *.rds.evam.it *.www.evam.it
groundupcoaching.com *.groundupcoaching.com *.m.groundupcoaching.com *.www.groundupcoaching.com
jc28.top *.jc28.top *.ww17.jc28.top
*.blog.josh-peters.name *.development.josh-peters.name josh-peters.name *.josh-peters.name
*.m.purefit.in *.mail.purefit.in *.old.purefit.in purefit.in *.purefit.in *.sitemap.purefit.in *.test.purefit.in *.wildcard.purefit.in
saigo.co *.saigo.co
*.atbbuildinginc.trydevkit.com *.classicalturns.trydevkit.com *.heimatgestalten.trydevkit.com *.mblgtacc2013.trydevkit.com *.morvelobasso.trydevkit.com *.t-hasak.trydevkit.com trydevkit.com *.trydevkit.com
*.spb.xn--bnq032o.com xn--bnq032o.com *.xn--bnq032o.com
*.16bz5.zenquix.top *.1846m.zenquix.top *.78z68.zenquix.top *.l0r4m.zenquix.top *.lbcp6.zenquix.top *.lkzdx.zenquix.top *.ndifg.zenquix.top *.ques8.zenquix.top *.snx68.zenquix.top *.z3dl1.zenquix.top zenquix.top *.zenquix.top