Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=johnhancokltc.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 19, 2026
Valid Until
August 17, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CC:58:48:CE:DA:7E:5F:26:C9:F1:51:FA:3E:B3:51:76:5A:09:61:92:39:BF:84:8E:5C:C2:A6:FE:23:B9:5C:35
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
it-college.com *.it-college.com *.32.it-college.com *.igs.it-college.com *.students.it-college.com

Other domains in certificate

apikeclamongankota.org *.apikeclamongankota.org *.qhwk9z.apikeclamongankota.org
cloud-spark.team *.cloud-spark.team *.saw3i1.cloud-spark.team
*.api.cookspaghettisquash.site *.cicd.cookspaghettisquash.site cookspaghettisquash.site *.cookspaghettisquash.site *.hotfix.cookspaghettisquash.site *.notexistsstaging.cookspaghettisquash.site *.preprod.cookspaghettisquash.site *.qwosystaging.cookspaghettisquash.site
*.abelsphl.data-center-floor.com *.alboyo.data-center-floor.com *.aogrexnr.data-center-floor.com *.autodiscover.data-center-floor.com *.bwer.data-center-floor.com *.cpanel.data-center-floor.com data-center-floor.com *.data-center-floor.com *.eiklaw.data-center-floor.com *.fiiwylzo.data-center-floor.com *.fjei.data-center-floor.com *.lnzl.data-center-floor.com *.qphbhmoq.data-center-floor.com *.qqsowlxv.data-center-floor.com *.sxrfleyh.data-center-floor.com *.uunyjpcd.data-center-floor.com *.vdcmpird.data-center-floor.com *.webmail.data-center-floor.com *.wvxfhfxy.data-center-floor.com
*.caravanning.galire.info *.cottonseed.galire.info *.cutting.galire.info *.denunciatory.galire.info galire.info *.galire.info *.inconcoction.galire.info *.lux.galire.info *.monism.galire.info *.reincarnate.galire.info *.tilmus.galire.info *.vaulted.galire.info
instant400saro.com *.instant400saro.com
johnhancokltc.com *.johnhancokltc.com
*.123.movies123.live *.123movies.movies123.live *.m.movies123.live movies123.live *.movies123.live *.webdisk.movies123.live *.ww.movies123.live *.ww2.movies123.live *.www.movies123.live
*.admin.neepg.bet *.app.neepg.bet *.asa.neepg.bet *.assets.neepg.bet *.blog.neepg.bet *.ff0c11ab-375e-463b-889e-d4d373a448de.neepg.bet *.hostmaster.neepg.bet neepg.bet *.neepg.bet
*.horde.opentunisia.org *.meet.opentunisia.org *.node33001.opentunisia.org *.ns2.opentunisia.org opentunisia.org *.opentunisia.org *.webmail.opentunisia.org
piao.asia *.piao.asia *.webdisk.piao.asia
*.mail.platinum-finance.com platinum-finance.com *.platinum-finance.com *.webmail.platinum-finance.com
*.hostmaster.ventana.pro *.kcw56e7zuu8edk5o.ventana.pro ventana.pro *.ventana.pro