76/100 SECURITY SCORE

Certificate Information

Subject
CN=mitarbeiterangrbote.de
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 07, 2026
Valid Until
May 08, 2026 81 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
88:9C:9B:18:88:0F:C1:4B:34:06:8E:1B:58:F7:27:1D:28:5B:83:44:49:29:E2:25:D3:17:FA:C7:9D:36:78:6C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
kasmin.com *.kasmin.com *.crm.kasmin.com *.facebook.kasmin.com *.instagram.kasmin.com *.link.kasmin.com *.maxim.kasmin.com *.youtabe.kasmin.com

Other domains in certificate

10travlr.com.au *.10travlr.com.au *.ww84.10travlr.com.au
*.admin.audiomusicsoftware-d.site audiomusicsoftware-d.site *.audiomusicsoftware-d.site *.beta.audiomusicsoftware-d.site *.com.audiomusicsoftware-d.site *.game.audiomusicsoftware-d.site *.git.audiomusicsoftware-d.site *.login.audiomusicsoftware-d.site *.news.audiomusicsoftware-d.site *.postmaster.audiomusicsoftware-d.site *.www.audiomusicsoftware-d.site
biochip.au *.biochip.au
bokepdo.club *.bokepdo.club *.hostmaster.bokepdo.club *.mail.bokepdo.club *.pruebas.bokepdo.club *.realestate.bokepdo.club *.report.bokepdo.club *.webdisk.bokepdo.club
bruinrent.io *.bruinrent.io *.pay.bruinrent.io
*.m.microsoftstrea.com microsoftstrea.com *.microsoftstrea.com *.web.microsoftstrea.com *.ww25.microsoftstrea.com
*.lit-beratung.mitarbeiterangrbote.de mitarbeiterangrbote.de *.mitarbeiterangrbote.de *.schomeacker.mitarbeiterangrbote.de
mybylgbs.com *.mybylgbs.com
ownat.online *.ownat.online *.ww25.ownat.online
paritoksitorus.com *.paritoksitorus.com *.ww25.paritoksitorus.com
piermadole.pl *.piermadole.pl
soiedivine.store *.soiedivine.store
*.hotfix.storagecabinets-open.space *.intel.storagecabinets-open.space *.staging.storagecabinets-open.space storagecabinets-open.space *.storagecabinets-open.space *.www.storagecabinets-open.space
tuigrry.cyou *.tuigrry.cyou
tut4k.life *.tut4k.life *.ww38.tut4k.life *.xx.tut4k.life
*.access.umma.net *.apps.umma.net *.cloud.umma.net *.forum.umma.net *.gateway.umma.net *.portal.umma.net *.rdp.umma.net *.rds.umma.net *.rds1.umma.net *.rdweb.umma.net *.ts.umma.net umma.net *.umma.net
*.random.xn--campigpltze-s8a.de xn--campigpltze-s8a.de *.xn--campigpltze-s8a.de
*.mx7.yotota.com *.random.yotota.com yotota.com *.yotota.com
zilox.site *.zilox.site