Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hoteltilmen.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 12, 2026
Valid Until
May 13, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:D8:04:4B:9E:19:F1:07:94:F0:92:0E:3E:80:0F:93:05:60:73:A0:58:B9:7D:D9:71:C8:0A:AF:43:E3:45:AE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
grumpygrouper.com
*.grumpygrouper.com
*.access.grumpygrouper.com
*.anyconnect.grumpygrouper.com
*.app.grumpygrouper.com
*.apps.grumpygrouper.com
*.auth.grumpygrouper.com
*.autoconfig.grumpygrouper.com
*.cisco.grumpygrouper.com
*.ciscovpn.grumpygrouper.com
*.citrix.grumpygrouper.com
*.cloud.grumpygrouper.com
*.cpanel.grumpygrouper.com
*.drvpn.grumpygrouper.com
*.email.grumpygrouper.com
*.fax.grumpygrouper.com
*.gateway.grumpygrouper.com
*.globalprotect.grumpygrouper.com
*.gp.grumpygrouper.com
*.imap.grumpygrouper.com
*.intra.grumpygrouper.com
*.labvirtual.grumpygrouper.com
*.m.grumpygrouper.com
*.mail.grumpygrouper.com
*.online.grumpygrouper.com
*.prelogon.grumpygrouper.com
*.ra.grumpygrouper.com
*.ravpn.grumpygrouper.com
*.rd.grumpygrouper.com
*.rdp.grumpygrouper.com
*.receiver.grumpygrouper.com
*.remoteapp.grumpygrouper.com
*.secureaccess.grumpygrouper.com
*.smtp.grumpygrouper.com
*.ssl.grumpygrouper.com
*.sslvpn.grumpygrouper.com
*.vdi.grumpygrouper.com
*.virtualapps.grumpygrouper.com
*.vpn.grumpygrouper.com
*.vpnssl.grumpygrouper.com
*.webdisk.grumpygrouper.com
*.webmail.grumpygrouper.com
*.workspace.grumpygrouper.com
*.www.grumpygrouper.com
*.admin.aysin.com
*.anyconnect.aysin.com
*.apps.aysin.com
aysin.com
*.aysin.com
*.cloud.aysin.com
*.cloudvpn.aysin.com
*.correo.aysin.com
*.email.aysin.com
*.ex02.aysin.com
*.exchange.aysin.com
*.fortigate.aysin.com
*.fortinet.aysin.com
*.ftp.aysin.com
*.gateway.aysin.com
*.m.aysin.com
*.mail.aysin.com
*.mail3.aysin.com
*.owa.aysin.com
*.rds.aysin.com
*.secure.aysin.com
*.sslvpn.aysin.com
*.vdi.aysin.com
*.vpn.aysin.com
*.webmail.aysin.com
*.ww25.aysin.com
cameramatrimoniale.com
*.cameramatrimoniale.com
*.hostmaster.cameramatrimoniale.com
*.aint.cod.fi
cod.fi
*.cod.fi
*.fecund.cod.fi
*.int.cod.fi
*.r.cod.fi
*.rubr.cod.fi
*.scalaint.cod.fi
*.sercace.cod.fi
*.t.cod.fi
*.x.cod.fi
*.bi.hoteltilmen.com
*.dashboard.hoteltilmen.com
*.demo.hoteltilmen.com
hoteltilmen.com
*.hoteltilmen.com
Other domains in certificate