Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=aik-yr.shop
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 29, 2026
Valid Until
July 28, 2026 66 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
14:BB:9B:C3:8E:7B:AA:E2:C9:76:2A:A1:A7:B7:48:08:CD:52:4F:5D:A3:8C:3A:1F:1E:58:16:7D:B0:EB:D1:97
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
hansmin.com *.hansmin.com *.craters.hansmin.com *.kadkahwin.hansmin.com *.official.hansmin.com *.registration.hansmin.com

Other domains in certificate

aik-yr.shop *.aik-yr.shop *.www.aik-yr.shop
*.09e59339-4d39-4112-bf72-118f79a855de.executive-office.art *.app.executive-office.art executive-office.art *.executive-office.art *.portal.executive-office.art *.www.executive-office.art
*.admin.misigoypro.info *.api.misigoypro.info *.app.misigoypro.info *.d3944ee5-b65a-4ad3-b183-41a568ca8085.misigoypro.info *.dev.misigoypro.info misigoypro.info *.misigoypro.info *.new.misigoypro.info *.staging.misigoypro.info *.test.misigoypro.info *.www.misigoypro.info
*.2f942e57-7e45-4703-883a-dba7a322be1d.mychartfcn.net *.49075f32-6b45-4b13-9768-d5d66ca5dbc2.mychartfcn.net *.7f967760-2d71-49a0-b969-e6f737463247.mychartfcn.net *.a17fddbd-2e45-4941-ba03-87b199289187.mychartfcn.net *.admin.mychartfcn.net *.adobe.mychartfcn.net *.aging.mychartfcn.net *.api.mychartfcn.net *.app.mychartfcn.net *.appsheet.mychartfcn.net *.backend.mychartfcn.net *.bi-hotfix.mychartfcn.net *.bi-prod.mychartfcn.net *.bi.mychartfcn.net *.bigdata.mychartfcn.net *.biom2.mychartfcn.net *.chart.mychartfcn.net *.ci-ci.mychartfcn.net *.ci.mychartfcn.net *.cicd.mychartfcn.net *.d3b09122-2b26-40d0-88a0-ccda5e9b2562.mychartfcn.net *.dashboard.mychartfcn.net *.dashboards.mychartfcn.net *.demo.mychartfcn.net *.dev.mychartfcn.net *.dev1redash.mychartfcn.net *.gpnuwdev1redash.mychartfcn.net *.metric.mychartfcn.net *.metrics.mychartfcn.net *.mta-sts.mychartfcn.net mychartfcn.net *.mychartfcn.net *.notexistsapp.mychartfcn.net *.notexistsdev.mychartfcn.net *.notexistsstaging.mychartfcn.net *.pipeline.mychartfcn.net *.preprod-bi.mychartfcn.net *.preview-flow.mychartfcn.net *.production.mychartfcn.net *.redash.mychartfcn.net *.reporting.mychartfcn.net *.reports.mychartfcn.net *.research.mychartfcn.net *.rhwkxci.mychartfcn.net *.ruatcwnjrynotexistsdev.mychartfcn.net *.sandbox.mychartfcn.net *.stats.mychartfcn.net *.supersets.mychartfcn.net *.test-bi.mychartfcn.net *.uat.mychartfcn.net *.vpn.mychartfcn.net *.wallet.mychartfcn.net *.webmail.mychartfcn.net *.www.mychartfcn.net
*.mail.spacecontroller.de spacecontroller.de *.spacecontroller.de *.www.spacecontroller.de
*.59fcf701-cf92-4e3e-aae2-62d5b67812f2.veenajettiisascam.com *.685aeb5a-1f9f-4a69-bab4-685fd9c00e75.veenajettiisascam.com *.dev.veenajettiisascam.com *.staging.veenajettiisascam.com veenajettiisascam.com *.veenajettiisascam.com