76/100 SECURITY SCORE

Certificate Information

Subject
CN=comibb.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 15, 2026
Valid Until
April 15, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AD:A7:69:01:9B:C6:88:9A:23:E2:88:35:CA:43:BC:00:DA:3D:A1:62:2E:74:1E:24:DC:2B:13:F5:7E:BD:9A:61
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

87 domains
selfclimbing.com *.selfclimbing.com

Other domains in certificate

*.a2.amberflann.site amberflann.site *.amberflann.site
*.architektur.beautyfashionamazing.co.uk beautyfashionamazing.co.uk *.beautyfashionamazing.co.uk *.spielefurkinder.beautyfashionamazing.co.uk *.zinc.beautyfashionamazing.co.uk *.zonneenergie.beautyfashionamazing.co.uk
buffo.com *.buffo.com *.ww25.buffo.com
cable-discount.com *.cable-discount.com *.www.cable-discount.com
comibb.co *.comibb.co *.google.comibb.co *.imgbb.comibb.co *.moneysavingexpert.comibb.co *.qtaakimgbb.comibb.co *.youtube.comibb.co
cratos.vip *.cratos.vip *.mail.cratos.vip *.ww25.cratos.vip
disasm.online *.disasm.online
freehypnosisclinic.com *.freehypnosisclinic.com *.hypnosisthatworks.freehypnosisclinic.com *.new.freehypnosisclinic.com *.newlifeclinics.freehypnosisclinic.com *.newlifehypnosis.freehypnosisclinic.com *.staging1.freehypnosisclinic.com
impactoletras3d.com *.impactoletras3d.com
*.data-dev.jiaogulan.bio jiaogulan.bio *.jiaogulan.bio
*.cnt.logisticstrategy.com logisticstrategy.com *.logisticstrategy.com
*.hostmaster.looperman.co looperman.co *.looperman.co *.ww25.looperman.co *.ww38.looperman.co *.www.looperman.co
onsen-hot.com *.onsen-hot.com
*.ns1.ordatechhub.com ordatechhub.com *.ordatechhub.com *.webmail.ordatechhub.com
*.cpcalendars.pakopakoland.work pakopakoland.work *.pakopakoland.work *.webdisk.pakopakoland.work
pegasusplay77ungu.com *.pegasusplay77ungu.com *.ww25.pegasusplay77ungu.com
peliculastotales.com *.peliculastotales.com *.random.peliculastotales.com *.www.peliculastotales.com
*.ci.pposeandde.xyz *.demo.pposeandde.xyz *.hgkzm.pposeandde.xyz *.jafnn.pposeandde.xyz *.kqkzf.pposeandde.xyz pposeandde.xyz *.pposeandde.xyz *.random.pposeandde.xyz *.staging.pposeandde.xyz *.ww25.pposeandde.xyz
*.get.quotesgoals.com quotesgoals.com *.quotesgoals.com
*.on.scalp.pictures scalp.pictures *.scalp.pictures
shijiacleaning.com *.shijiacleaning.com *.www.shijiacleaning.com