Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=letithappen.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
64 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:9E:CF:43:99:F9:3D:CE:69:1C:6F:49:C9:6A:E9:36:22:45:BC:E9:3E:BA:D7:A2:6E:44:A9:12:2B:97:15:A3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
letithappen.org
*.letithappen.org
*.akqxfqtzhisdx.letithappen.org
*.api.letithappen.org
*.assets.letithappen.org
*.cplzuxya.letithappen.org
*.dev.letithappen.org
*.dhvrypje.letithappen.org
*.external.letithappen.org
*.gnsqkeuo.letithappen.org
*.hjdelpts.letithappen.org
*.idsynebx.letithappen.org
*.intranet.letithappen.org
*.johbwkmd.letithappen.org
*.kmwtxexternal.letithappen.org
*.kqmvhxns.letithappen.org
*.lqzmgdtr.letithappen.org
*.lxpbuytf.letithappen.org
*.m.letithappen.org
*.mvstuwfb.letithappen.org
*.mvzwfitc.letithappen.org
*.my.letithappen.org
*.oetsvqzy.letithappen.org
*.olbmdunk.letithappen.org
*.pgxafbko.letithappen.org
*.portal.letithappen.org
*.qxjercld.letithappen.org
*.ripnkjvc.letithappen.org
*.rxpyactv.letithappen.org
*.tjnpbolbmdunk.letithappen.org
*.twadfsje.letithappen.org
*.ucxgcapp.letithappen.org
*.vizytqsw.letithappen.org
*.vqjgwilx.letithappen.org
*.vscjrmvzwfitc.letithappen.org
*.wucahxiy.letithappen.org
*.xcoyhqbn.letithappen.org
*.znmjipkc.letithappen.org
*.32.inkvc.ai
inkvc.ai
*.inkvc.ai
*.9c207b60-2875-464d-adf7-66d258d50f88.kkrone.at
*.data.kkrone.at
*.docs.kkrone.at
*.emv1.kkrone.at
*.external.kkrone.at
*.intranet.kkrone.at
kkrone.at
*.kkrone.at
*.public.kkrone.at
*.s1.kkrone.at
*.service.kkrone.at
*.sharepoint.kkrone.at
*.sitemap.kkrone.at
*.sitemaps.kkrone.at
*.ww.kkrone.at
mydesi.pro
*.mydesi.pro
*.ww38.mydesi.pro
*.autodiscover.oilcorp.com.au
*.fuelcorp.oilcorp.com.au
oilcorp.com.au
*.oilcorp.com.au
*.oilcorpfuels.oilcorp.com.au
*.thomasnorthcott.oilcorp.com.au
*.tomnorthcott.oilcorp.com.au
*.ww25.oilcorp.com.au
*.ww38.oilcorp.com.au
*.home.oldcrook.com
*.hostmaster.oldcrook.com
*.localhost.oldcrook.com
*.m.oldcrook.com
oldcrook.com
*.oldcrook.com
*.remote.oldcrook.com
*.www.oldcrook.com
sppcontest.org
*.sppcontest.org
*.api.tantor.io
*.apiz.tantor.io
*.app.tantor.io
*.cred-dev.tantor.io
*.darch-dev.tantor.io
*.dev.tantor.io
*.keycloak.tantor.io
*.login.tantor.io
*.monitoring.tantor.io
tantor.io
*.tantor.io
*.ui.tantor.io
Other domains in certificate