Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=alsenan.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A7:0A:75:13:9A:E0:96:BD:B7:85:13:F5:B5:A1:40:27:FD:97:A5:2A:AA:8D:25:31:7B:1E:B7:2F:B3:77:D6:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
koenigsmark.com
*.koenigsmark.com
alsenan.com
*.alsenan.com
aluguerdecarros.com
*.aluguerdecarros.com
alzaytun.com
*.alzaytun.com
anchay.com
*.anchay.com
anelsa.com
*.anelsa.com
anezka.com
*.anezka.com
boldtravelexpeditions.live
*.boldtravelexpeditions.live
boon-rfrrls.com
*.boon-rfrrls.com
defunt.com
*.defunt.com
dibakar69.xyz
*.dibakar69.xyz
diyadventurezone.xyz
*.diyadventurezone.xyz
dornascostas.com
*.dornascostas.com
dpzr.com
*.dpzr.com
easydiyprojectshub.live
*.easydiyprojectshub.live
ecigarets.com
*.ecigarets.com
ecogreenhaven.live
*.ecogreenhaven.live
ecolushgardens.live
*.ecolushgardens.live
edaad.com
*.edaad.com
enchantedweddingsscene.beauty
*.enchantedweddingsscene.beauty
energizedfitnessvision.run
*.energizedfitnessvision.run
fitnessdreamachievers.run
*.fitnessdreamachievers.run
foreverweddingsvows.beauty
*.foreverweddingsvows.beauty
genesisclinic.co.za
*.genesisclinic.co.za
greenspiritgardens.live
*.greenspiritgardens.live
homeprojectplans.xyz
*.homeprojectplans.xyz
hookandneedle.com
*.hookandneedle.com
horath.com
*.horath.com
houritsu.com
*.houritsu.com
huaxingyu.com
*.huaxingyu.com
invitingfoodnetwork.food
*.invitingfoodnetwork.food
jobprogression.site
*.jobprogression.site
joyfulweddingsoccasions.beauty
*.joyfulweddingsoccasions.beauty
katje.com
*.katje.com
khanesh.com
*.khanesh.com
khoshaba.com
*.khoshaba.com
kicksandgiggles.com
*.kicksandgiggles.com
kidzkouture.com
*.kidzkouture.com
killerman.com
*.killerman.com
killfee.com
*.killfee.com
kinderfeestjes.com
*.kinderfeestjes.com
kingkao.com
*.kingkao.com
klampe.com
*.klampe.com
kohanim.com
*.kohanim.com
koreanfoodstore.com
*.koreanfoodstore.com
Other domains in certificate