Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=katalis.me
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 28, 2026
Valid Until
April 28, 2026 70 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:62:7D:D6:AF:60:69:3B:59:F9:80:F6:0A:79:4F:65:8C:E6:7C:39:C6:4C:30:37:9E:04:5F:6D:12:53:AA:95
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
smartpharm1.com *.smartpharm1.com

Other domains in certificate

agroglobetrade.com *.agroglobetrade.com
ancasgrhu.com *.ancasgrhu.com
c7yule-c7gw.com *.c7yule-c7gw.com
dg4379.com *.dg4379.com
dienlanhtanphat.com *.dienlanhtanphat.com
eblast.au *.eblast.au
ecartz-home.com *.ecartz-home.com
*.51-butut.encapsule.com *.99-mongo.encapsule.com *.connatural.encapsule.com encapsule.com *.encapsule.com *.entail.encapsule.com *.ip4.encapsule.com *.ouuyj.encapsule.com *.ptr3465.encapsule.com *.spirole.encapsule.com *.treey.encapsule.com
ferdizeyrek.com *.ferdizeyrek.com
field-redepreciation.com *.field-redepreciation.com
ggchaeum.com *.ggchaeum.com
global-cebraitransition.com *.global-cebraitransition.com
kairustaubu.com *.kairustaubu.com
*.assets.katalis.me *.belanjarumah.katalis.me *.blanjarumah.katalis.me *.ifan.katalis.me *.karir.katalis.me katalis.me *.katalis.me *.mentor.katalis.me *.synthesishomes.katalis.me
laser-work.com *.laser-work.com
lostmining.com *.lostmining.com
nose-circulation.com *.nose-circulation.com
primary-math.com *.primary-math.com
*.de.rennovation.com *.origin.rennovation.com rennovation.com *.rennovation.com *.test.rennovation.com *.test1.rennovation.com *.users.rennovation.com *.wildcard.rennovation.com
segurosaldia.com *.segurosaldia.com
sexgape.com *.sexgape.com
shichojp.net *.shichojp.net
sookharibazar.com *.sookharibazar.com
sujlhaxilfk.com *.sujlhaxilfk.com
t9os.com *.t9os.com
technoshimi.com *.technoshimi.com
tradeuz.com *.tradeuz.com
truyendkm.com *.truyendkm.com
wishbookshelf.com *.wishbookshelf.com
xxxsizok.com *.xxxsizok.com
yakong2.net *.yakong2.net
yodabashi.com *.yodabashi.com
zumcoo.com *.zumcoo.com