Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=ola.de
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 30, 2026
Valid Until
July 29, 2026 83 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:74:2D:3E:C3:2B:C6:D9:E2:85:CF:F4:CD:E5:50:3C:B0:A9:ED:1B:88:F3:FB:A8:EB:B5:66:A6:D0:5B:15:15
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
ola.de *.ola.de *.ecuador.ola.de *.fritz-k.ola.de *.l.ola.de *.la.ola.de *.le.ola.de *.maria.ola.de *.motor.ola.de *.patho.ola.de *.un.ola.de *.una.ola.de

Other domains in certificate

*.1ntxs.aiwucm-oaa.sbs *.3enrz.aiwucm-oaa.sbs *.533i3.aiwucm-oaa.sbs *.73e3j.aiwucm-oaa.sbs *.99jtw.aiwucm-oaa.sbs *.ahmce.aiwucm-oaa.sbs aiwucm-oaa.sbs *.aiwucm-oaa.sbs *.b737n.aiwucm-oaa.sbs *.bp1s3.aiwucm-oaa.sbs *.cm97n.aiwucm-oaa.sbs *.ewxk1.aiwucm-oaa.sbs *.ifmnd.aiwucm-oaa.sbs *.r7pc3.aiwucm-oaa.sbs *.rzria.aiwucm-oaa.sbs *.sx937.aiwucm-oaa.sbs *.xsjcs.aiwucm-oaa.sbs
captcartoon.com *.captcartoon.com *.mail.captcartoon.com *.webdisk.captcartoon.com *.webmail.captcartoon.com
*.alpha.ffmovie.biz *.analytic.ffmovie.biz *.analytics.ffmovie.biz *.bi.ffmovie.biz *.chat.ffmovie.biz *.data.ffmovie.biz *.development.ffmovie.biz ffmovie.biz *.ffmovie.biz *.flowise.ffmovie.biz *.preprod.ffmovie.biz *.production.ffmovie.biz *.shop.ffmovie.biz *.visualizations.ffmovie.biz
*.1fxx39gyedz22oou.timet.info *.admin.timet.info *.app.timet.info *.art.timet.info *.assets.timet.info *.crm.timet.info *.emv1.timet.info *.fantastic.timet.info *.gate.timet.info *.hair.timet.info *.help.timet.info *.lolimov.timet.info *.reep.timet.info *.sales.timet.info *.sanantonioadmin.timet.info *.serverhosting112.timet.info *.sitemap.timet.info *.sitemaps.timet.info *.ssang10055.timet.info *.support.timet.info timet.info *.timet.info *.users.timet.info *.ww.timet.info *.ww1.timet.info *.ww25.timet.info *.ww3.timet.info *.ww38.timet.info *.xenos.timet.info
*.cntq.xowd.com *.dko.xowd.com *.ehjlp.xowd.com *.m.xowd.com *.pp.xowd.com *.sbzrq.xowd.com *.www.xowd.com *.xn--svxykuzjpk-r9a.xowd.com xowd.com *.xowd.com *.xp.xowd.com *.ytozb.xowd.com