Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=abholsolar.de
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 17, 2026
Valid Until
April 17, 2026
52 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9E:FF:3B:D5:DB:F8:19:CF:9D:25:DC:B5:BD:5B:0B:33:BD:7F:B3:CF:58:FD:A7:A4:29:96:5F:3B:A9:FF:26:8B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sofiafoxtv.com
*.sofiafoxtv.com
*.alpha.sofiafoxtv.com
*.view.sofiafoxtv.com
*.ww25.sofiafoxtv.com
abholsolar.de
*.abholsolar.de
abjmkkoavooow.top
*.abjmkkoavooow.top
acadamianataciondiyer.store
*.acadamianataciondiyer.store
acadgroup.de
*.acadgroup.de
akairo.de
*.akairo.de
alex-recycling-gmbh.de
*.alex-recycling-gmbh.de
allbestdomains.online
*.allbestdomains.online
alluredujour.store
*.alluredujour.store
alooy26.online
*.alooy26.online
altadefinizione01.games
*.altadefinizione01.games
altenkunstadt-porzellan.de
*.altenkunstadt-porzellan.de
am-12.top
*.am-12.top
amalfi-trattoria.de
*.amalfi-trattoria.de
aoustin.com
*.aoustin.com
*.beta.aoustin.com
*.db.aoustin.com
*.demo2.aoustin.com
*.dev.aoustin.com
*.m.aoustin.com
*.map.aoustin.com
*.moodle.aoustin.com
*.random.aoustin.com
*.windows.aoustin.com
*.ww1.aoustin.com
*.ww25.aoustin.com
apexbpo.site
*.apexbpo.site
apostasninjasapp.online
*.apostasninjasapp.online
aprende-estrategiautomatica.online
*.aprende-estrategiautomatica.online
aqar.space
*.aqar.space
arabiancarpet.store
*.arabiancarpet.store
auroradance.com
*.auroradance.com
*.c5k0yyocnq.cargroup.com.au
cargroup.com.au
*.cargroup.com.au
*.host.cargroup.com.au
*.mail.cargroup.com.au
*.mail7.cargroup.com.au
*.mailsrv.cargroup.com.au
*.po.cargroup.com.au
*.random.cargroup.com.au
*.webmail.cargroup.com.au
*.wildcard.cargroup.com.au
*.wsxhwqqxbgf.cargroup.com.au
doods.mobi
*.doods.mobi
*.ww25.doods.mobi
*.www.doods.mobi
finalizarcompraoutlet.online
*.finalizarcompraoutlet.online
financehelpdesks.com
*.financehelpdesks.com
heil-zaunanlagen.de
*.heil-zaunanlagen.de
*.random.vibo.live
vibo.live
*.vibo.live
*.ww25.vibo.live
*.xxx.vibo.live
vosgienne.org
*.vosgienne.org
*.www.vosgienne.org
wirtshaus-stiepel.de
*.wirtshaus-stiepel.de
wisdmm.click
*.wisdmm.click
Other domains in certificate