85/100 SECURITY SCORE

Certificate Information

Subject
CN=imperva.com
Issuer
C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2025 Q3
Valid From
September 25, 2025
Valid Until
March 24, 2026 59 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DE:55:35:44:6B:44:05:80:AF:B3:D8:E7:E0:2D:3B:1D:6E:F0:65:95:58:CB:56:40:3A:6C:81:B4:05:6F:55:8F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
upgrade-insecure-requests; frame-ancestors:
X-Frame-Options
Good
SameOrigin
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

134 domains
*.ab-inbev.com compliancechannelglobal.ab-inbev.com europecareers.ab-inbev.com lasmail.ab-inbev.com moyo.ab-inbev.com riskassessmentplatform-uat.ab-inbev.com *.hoppy.ab-inbev.com *.mba.ab-inbev.com *.bock.aurora.ab-inbev.com *.staging.hoppy.ab-inbev.com

Other domains in certificate

ab-inbev-media.de www.ab-inbev-media.de
ab-inbev.be www.ab-inbev.be
ab-inbev.de www.ab-inbev.de
ab-inbev.eu www.ab-inbev.eu
ab-inbev.fr www.ab-inbev.fr
ab-inbev.it www.ab-inbev.it
ab-inbev.nl www.ab-inbev.nl
abi-distributorcentral.com *.abi-distributorcentral.com
*.bavaria.co
becks.de *.becks.de
*.survey-assets.beertech.com *.survey.beertech.com
*.bees-platform.dev *.lab.bees-platform.dev *.poc.bees-platform.dev *.sre.bees-platform.dev
beesdelivery.be *.beesdelivery.be
biermaster.nl *.biermaster.nl
bierorama.com www.bierorama.com
birradelborgo.it *.birradelborgo.it
bohemia.com.br www.bohemia.com.br
brahma.com.br www.brahma.com.br
brasseriedeluxembourg.lu www.brasseriedeluxembourg.lu
*.budlight.com
budlightbeer.co.uk www.budlightbeer.co.uk
budweiser.es www.budweiser.es
budweiserbrewinggroup.co.uk www.budweiserbrewinggroup.co.uk
campokonecta.com *.campokonecta.com
canjeapromo.com.ar *.canjeapromo.com.ar
castlemilkstout.co.za www.castlemilkstout.co.za
catalogoabichile.cl *.catalogoabichile.cl
cerveceriaymalteriaquilmes.com www.cerveceriaymalteriaquilmes.com
cervezacorona.com.ar *.cervezacorona.com.ar
cervezacorona.es www.cervezacorona.es
corona-extra.it www.corona-extra.it
corona-island.co.uk *.corona-island.co.uk
corona-island.eu *.corona-island.eu
corona.de www.corona.de
coronaextra.ch *.coronaextra.ch
coronaextra.co.uk www.coronaextra.co.uk
coronaisland.com *.coronaisland.com
cristal.com.pe www.cristal.com.pe
*.ops.donuslabs.net *.prd.donuslabs.net *.sec.donuslabs.net *.stg.donuslabs.net
evergrainingredients.com www.evergrainingredients.com
facultaddelacerveza.com *.facultaddelacerveza.com
getstartedwithlabatt.ca *.getstartedwithlabatt.ca
getstartedwithlabatt.com *.getstartedwithlabatt.com
brouwerij.hertogjan.nl rijpingskelder.hertogjan.nl
imperva.com
mikeshardlemonade.ca www.mikeshardlemonade.ca
mimodelo.com.mx qa.mimodelo.com.mx www.mimodelo.com.mx
cloudops-services.mybees-platform.com
*.sit.fintech.mybees-platform.dev
palmbayspritz.ca *.palmbayspritz.ca
pasioncerveceraboliviana.com *.pasioncerveceraboliviana.com
*.v2.playmaker.beer
promorockganador.quilmes.com.ar *.promorockganador.quilmes.com.ar *.quilmes.com.ar
samennaarsucces-retail.nl *.samennaarsucces-retail.nl
skol.com.br www.skol.com.br
stellaartois.ca www.stellaartois.ca
*.stellaartois.co
stellaartois.com.br www.stellaartois.com.br
tapmeesters.nl *.tapmeesters.nl
tennentssuper.it *.tennentssuper.it
vidlcellars.com www.vidlcellars.com
*.dev.ze.codes
*.release.ze.delivery *.ze.delivery