Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=liscio.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 15, 2026
Valid Until
July 14, 2026 62 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:5D:50:E6:DE:B7:C5:40:C0:6C:50:9B:83:8C:6E:41:EB:86:1B:57:B1:CE:D2:20:1D:07:83:2F:A4:E2:D8:00
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
bom777.io *.bom777.io *.12e753f1-946e-400f-afe6-eb7bdc872514.bom777.io *.admin.bom777.io *.app.bom777.io *.dev.bom777.io *.www.bom777.io

Other domains in certificate

10minutemailpro.com *.10minutemailpro.com *.autodiscover.10minutemailpro.com *.cpcontacts.10minutemailpro.com *.ww25.10minutemailpro.com *.ww38.10minutemailpro.com
*.api.cochurch.com *.beta.cochurch.com cochurch.com *.cochurch.com *.demo.cochurch.com *.emv1.cochurch.com *.exchange.cochurch.com *.help.cochurch.com *.hostmaster.cochurch.com *.m.cochurch.com *.mail.cochurch.com *.mailx.cochurch.com *.post.cochurch.com *.ragnaready.cochurch.com *.relay.cochurch.com *.shop.cochurch.com *.store.cochurch.com *.subia.cochurch.com *.temp.cochurch.com *.webmail.cochurch.com *.wiki.cochurch.com *.ww1.cochurch.com *.ww17.cochurch.com *.ww25.cochurch.com *.ww38.cochurch.com
*.api.dosifaceog.com *.app.dosifaceog.com *.b19d392b-6e58-404c-a155-744f3343fac0.dosifaceog.com *.cloud.dosifaceog.com *.demo.dosifaceog.com *.dev.dosifaceog.com dosifaceog.com *.dosifaceog.com *.email.dosifaceog.com *.remote.dosifaceog.com *.sandbox.dosifaceog.com *.sharepoint.dosifaceog.com *.test.dosifaceog.com *.vpn.dosifaceog.com *.ww6.dosifaceog.com
*.gilliamcpapc.liscio.com *.isagenix.liscio.com *.kbnadvisors.liscio.com liscio.com *.liscio.com *.skarfinancial.liscio.com *.wilsoncpallc.liscio.com *.ww38.liscio.com
postoffice.chat *.postoffice.chat *.usps.postoffice.chat
*.cloudvpn.rastayard.com rastayard.com *.rastayard.com *.webvpn.rastayard.com
*.bfn.sambakoop.co.za *.c8af6353-17ba-489e-a85a-6732a8b33f26.sambakoop.co.za *.dbo.sambakoop.co.za *.f87afcbd-8a3a-4a42-8d0e-4050630fce88.sambakoop.co.za *.mail.sambakoop.co.za *.mailin.sambakoop.co.za sambakoop.co.za *.sambakoop.co.za *.secure.sambakoop.co.za
*.clinicscribe.seobrand.site *.demo.seobrand.site *.iptv.seobrand.site *.mail.seobrand.site *.mx.seobrand.site seobrand.site *.seobrand.site *.test.seobrand.site *.www.seobrand.site
*.app.vns453.com vns453.com *.vns453.com