Open
Cached
·
just now
95/100
SECURITY SCORE
Certificate Information
Subject
CN=support.cosmetto.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 07, 2026
Valid Until
April 07, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
15:11:0A:D4:8B:E7:0A:E4:D9:D7:86:A7:43:A5:48:AC:81:38:9A:29:F1:08:35:6A:FD:63:44:DE:4C:CD:F7:27
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=63072000;includeSubDomains
Content-Security-Policy
Basic
script-src; object-src; base-uri; +1 more
script-src 'self' 'strict-dynamic' static.zohocdn.com salesiq.zoho.com dtzpfzv31buvf.cloudfront.net cdn.pagesense.io js.zohocdn.com widgets.zohosalesiq.com zohotagmanager.cdn.pagesense.io 'nonce-9dd86595242c8cad110a934196dad10a';object-src 'none';base-uri 'self' static.zohocdn.com;report-uri https://logsapi.zoho.com/csplog?service=support;
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
accelerometer=(), ambient-light-sensor=(), bluetooth=(), compute-pressure=(), document-domain=(), encrypted-media=(), gamepad=(), gyroscope=(), hid=(), magnetometer=(), midi=(), screen-wake-lock=(), serial=(), speaker-selection=(), usb=(), xr-spatial-tracking=()
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 4 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
88 domains
process.suggestions.mobilewaretech.com
support.2pr.ai
support.advancedjobberintegration.com
clientsupport.advocatercm.com
support.ais-lims.com
support.alaskatraveldesk.com
corporate.amauonline.com
crossacad.amauonline.com
shortcourse.amauonline.com
rfphelpdesk.autorabit.com
a-rma.avalan.com
support.belegbote.de
support.biomimicry.net
help.biztec.us
helpdesk.broadsmart.co.za
support.cantarprod.ro
support.naya.co.ke
soporte.jobs.com.py
help.saferoad.com.sa
support.saferoad.com.sa
support.oc.com.tw
support.cosmetto.com
support.cryptocomputing.ca
help.cs-quad.com
support.cubepayment.com
help.designalign.com
support.dmblvd.com
support.e-providence.in
support.edgefunder.com
support.egbin-power.com
support.endetect.com
sfa.es-support.info
support.essentialstudios.ca
sdcolombia.facturaxion.com.co
help.familybilling.com
support.fluxinv.com
support.fndcsimmigration.com
support.greatplacetoworkasia.com
desk.hisworkmanshiplabor.com
support.immfinancial.com
support.incoreresidential.com
support.ista.org
supporters.it-fusion.org
support.izipass.pro
support.kanomaxfmt.com
helpdesk.keestack.com
support.konacabinetry.com
support.la-nurserie.com
support.leadspringisa.com
support.lizfashion.org
support.lmgnetworks.co.uk
support.matthewdorhauer.com
support.meerkat-tech.com
support.miler.com
support.navasolutions.net
support.neverfail.com
support.nextep.it
helpdesk.npts.ca
kb.nsgis.com
suporte.oascensorista.com.br
helpdesk.operaria.co
opn365zohodesk.opn365.com
helpdesk.optiviewusa.com
support.payentry.com
zohosupport.pimtoday.com
support.pinnacle-ma.com
support.qucell.com
helpdesk.religsolutions.com
support.reporter.software
support.resiliencebilling.com
helpdesk.reveali.com
support.rksolar.net
support.secrcomp.com
help.securewize.ca
support.smartscope.ai
support.taxfree4life.us
atendimento.datadriven.tec.br
desk.thekalco.com
tofix.theofficient.com.au
support.timechain.com
support.tinytorque.com
helpdesk.unint.eu
support.vanhollandgroup.nl
support.vinades.vn
support.winds.life
support.winds.tw
business-support.wontokone.com
support.workshoptwelve.com
Other domains in certificate