Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=have-we-met.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 22, 2026
Valid Until
April 22, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
76:C0:C7:4B:0C:91:D5:BF:E2:75:0F:47:FB:6A:89:F2:E4:0D:8F:E9:17:39:92:FB:1C:97:23:E6:10:27:EC:F2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
70 domains
undercover.life
*.undercover.life
*.mx.undercover.life
altered.life
*.altered.life
asamundo.pl
*.asamundo.pl
*.ww38.asamundo.pl
*.30.baseball-streams.club
baseball-streams.club
*.baseball-streams.club
civicccenterpharmacy.com
*.civicccenterpharmacy.com
pzj.com.pl
*.pzj.com.pl
desiplay.xyz
*.desiplay.xyz
*.sitemaps.desiplay.xyz
*.www.desiplay.xyz
dyskalkuliebehandlung.de
*.dyskalkuliebehandlung.de
*.random.dyskalkuliebehandlung.de
foyun.xyz
*.foyun.xyz
futureaitools.online
*.futureaitools.online
*.tbot.futureaitools.online
gabrielaol.store
*.gabrielaol.store
gomining.fun
*.gomining.fun
grubbin.de
*.grubbin.de
halalmart.store
*.halalmart.store
have-we-met.online
*.have-we-met.online
hostme.fun
*.hostme.fun
hot-tubs-938412.site
*.hot-tubs-938412.site
juhen.top
*.juhen.top
karun.online
*.karun.online
leasigmarkt.de
*.leasigmarkt.de
*.fantasy.muatlantis.online
muatlantis.online
*.muatlantis.online
*.amora-miura.ositeoficial.site
*.artrogota.ositeoficial.site
*.atomicproblack.ositeoficial.site
*.bolonopotelucrativo.ositeoficial.site
ositeoficial.site
*.ositeoficial.site
*.sulinex.ositeoficial.site
patrickstash.at
*.patrickstash.at
polzin-personal.de
*.polzin-personal.de
prelw35.site
*.prelw35.site
previewd.app
*.previewd.app
serrurerie-arthur.com
*.serrurerie-arthur.com
*.bizww38.versacesouthafrica.biz
versacesouthafrica.biz
*.versacesouthafrica.biz
Other domains in certificate