Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cocapital.co
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026
55 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:A4:91:B7:B8:CA:16:17:BB:2C:45:B9:7F:9B:A2:3B:AC:E2:91:95:6A:BC:D3:EB:A6:0A:4D:E0:9D:01:C9:DC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
43260.co
*.43260.co
116628.cc
*.116628.cc
19721.loan
*.19721.loan
198328.cc
*.198328.cc
1999cassino.com
*.1999cassino.com
63801041.top
*.63801041.top
67699.me
*.67699.me
82934.pro
*.82934.pro
845553.cc
*.845553.cc
alugarcarrosemdeposito-br.sbs
*.alugarcarrosemdeposito-br.sbs
aluminiumregale.de
*.aluminiumregale.de
anumuna.com
*.anumuna.com
archx.co
*.archx.co
bcokr.com
*.bcokr.com
*.mailer.bcokr.com
beatlandusa.com
*.beatlandusa.com
bianca-schmuck.at
*.bianca-schmuck.at
bizelev.pro
*.bizelev.pro
bluepress.co
*.bluepress.co
brandhouse.world
*.brandhouse.world
brightzone.company
*.brightzone.company
cemtech.co
*.cemtech.co
clasp.pro
*.clasp.pro
cleanfamily.org
*.cleanfamily.org
cocapital.co
*.cocapital.co
codevision.org
*.codevision.org
*.m.codevision.org
coensign.com
*.coensign.com
*.www.coensign.com
commercialmortgages.de
*.commercialmortgages.de
conceptthought.com
*.conceptthought.com
crossmarketing.co
*.crossmarketing.co
cueva.co
*.cueva.co
digist.co
*.digist.co
dkjgb.town
*.dkjgb.town
doctor-674651963.click
*.doctor-674651963.click
doumadaan.com
*.doumadaan.com
dweqhpt880.vip
*.dweqhpt880.vip
ecodiaper.baby
*.ecodiaper.baby
gasanbietre.de
*.gasanbietre.de
grbrauchtboote.de
*.grbrauchtboote.de
kartoffelgulasch.de
*.kartoffelgulasch.de
preiswerte-risikolebensversicherung.de
*.preiswerte-risikolebensversicherung.de
xn--alpenkruter-r8a.de
*.xn--alpenkruter-r8a.de
xn--damenrennrder-kfb.de
*.xn--damenrennrder-kfb.de
xn--hftrock-n2a.de
*.xn--hftrock-n2a.de
Other domains in certificate