Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=comesee.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 04, 2026
Valid Until
July 03, 2026 43 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BE:2D:AF:B9:CF:CC:6D:46:3A:D1:EB:10:01:5F:68:C5:EB:46:0E:CC:00:22:8B:1C:AF:24:C3:7E:2E:71:3C:F8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
comesee.it *.comesee.it *.admin.comesee.it *.api.comesee.it *.demo.comesee.it *.staging.comesee.it

Other domains in certificate

*.4.fko.cx fko.cx *.fko.cx *.ww01.fko.cx
hmegadropz.com *.hmegadropz.com *.random.hmegadropz.com *.ww16.hmegadropz.com *.ww25.hmegadropz.com
sdxsxsx.click *.sdxsxsx.click
search-for-projectors-145.sbs *.search-for-projectors-145.sbs
secondsunshine.com *.secondsunshine.com
security-jobs-4y1o8c1u2f6.sbs *.security-jobs-4y1o8c1u2f6.sbs
security-jobs-5z8g6j9c4d1.sbs *.security-jobs-5z8g6j9c4d1.sbs
securityinfra.pro *.securityinfra.pro
servicimoelite.com *.servicimoelite.com
shiqiner.top *.shiqiner.top
sjutr.claims *.sjutr.claims
sk100k.pro *.sk100k.pro
smartscript.pro *.smartscript.pro
socialladies.org *.socialladies.org
solar-panels-cyber-551.sbs *.solar-panels-cyber-551.sbs
soundsidehydrodipping.com *.soundsidehydrodipping.com
spk39vb8pscr6.com *.spk39vb8pscr6.com
spracuphgenie.com *.spracuphgenie.com
sruim.pro *.sruim.pro
ss123.info *.ss123.info
sss3217777.com *.sss3217777.com
sss7657777.com *.sss7657777.com
sss8767777.com *.sss8767777.com
sss9877777.com *.sss9877777.com
ssvv.pro *.ssvv.pro
stacklabs.pro *.stacklabs.pro
stakex.biz *.stakex.biz
starlitserenity.rest *.starlitserenity.rest
statovista.info *.statovista.info
storitex.info *.storitex.info
stratova.pro *.stratova.pro
swbonanzagames.com *.swbonanzagames.com
t9yzzvv.top *.t9yzzvv.top
tacticlegend804.info *.tacticlegend804.info
talenthafenrecruiting.com *.talenthafenrecruiting.com
themegamillions.com *.themegamillions.com *.ww25.themegamillions.com *.ww38.themegamillions.com
*.bazarbargh.tibago.es tibago.es *.tibago.es *.ww25.tibago.es