Open
Cached
·
just now
82/100
SECURITY SCORE
Certificate Information
Subject
CN=imperva.com
Issuer
C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2025 Q4
Valid From
December 04, 2025
Valid Until
June 02, 2026
138 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:86:49:F3:45:8E:27:5C:77:7E:09:1A:69:9F:09:A5:69:B4:41:66:58:4E:F4:FA:20:8F:84:21:2C:94:23:ED
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
upgrade-insecure-requests; frame-ancestors
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
151 domains
budlight.com
*.budlight.com
ab-inbev.com
*.ab-inbev.com
annualreport.ab-inbev.com
*.brewdat-dev.ab-inbev.com
*.gptap.ab-inbev.com
*.moyo.ab-inbev.com
*.northstar.ab-inbev.com
*.peopleplatform.ab-inbev.com
*.scaleops-poc.ab-inbev.com
abcommunityspeakers.com
*.abcommunityspeakers.com
abdraught.com
*.abdraught.com
abiboardmeeting.com
*.abiboardmeeting.com
abinbevfoundation.org
*.abinbevfoundation.org
abmarketing.com
*.abmarketing.com
abverify.com
*.abverify.com
www.abverify.com
abwholesaler.com
*.abwholesaler.com
anheuser-busch.com
*.anheuser-busch.com
*.apps.anheuser-busch.com
*.qa.apps.anheuser-busch.com
bandedpeakbrewing.com
*.bandedpeakbrewing.com
*.aap.beertech.com
*.beertech.com
*.brewpub.beertech.com
*.m360-accounts.beertech.com
*.naz.beertech.com
*.bees-internal.com
*.bees-platform.com
*.bees-platform.dev
beescoupons.com
*.beescoupons.com
budlight.ca
*.budlight.ca
budweiser.ca
www.budweiser.ca
budweiser.com
*.budweiser.com
www.budweiser.com
budweisertours.com
*.budweisertours.com
busch.com
*.busch.com
prc-dev.busch.com
prc-uat.busch.com
carlingblacklabelcup.co.za
*.carlingblacklabelcup.co.za
chernigivske.ua
*.chernigivske.ua
tadadelivery.com.hn
*.tadadelivery.com.hn
*.mybees.com.pa
bud66.com.py
*.bud66.com.py
*.mybees.com.py
tadadelivery.com.sv
*.tadadelivery.com.sv
corona-island.eu
*.corona-island.eu
corona.com
www.corona.com
coronaextra.ca
*.coronaextra.ca
culturaavl.com
www.culturaavl.com
cutwaterspirits.com
*.cutwaterspirits.com
*.dorada.es
draftline.com
*.draftline.com
drinknoonshine.com
*.drinknoonshine.com
elysianbrewing.com
www.elysianbrewing.com
estrellajalisco.com
*.estrellajalisco.com
familytalkaboutdrinking.com
*.familytalkaboutdrinking.com
fourpeaks.com
*.fourpeaks.com
goldenroad.la
*.goldenroad.la
gooseisland.com
*.gooseisland.com
*.hertogjan.nl
*.icsbrands.com
imperva.com
*.jupiler.be
karbachbrewing.com
*.karbachbrewing.com
keiths.ca
www.keiths.ca
labatt.com
*.labatt.com
landsharklager.com
*.landsharklager.com
*.leffe.com
michelobultra.ca
*.michelobultra.ca
michelobultra.com
*.michelobultra.com
millstreetbrewery.com
www.millstreetbrewery.com
*.mybees.com.br
*.mybees.ec
naturallight.com
*.naturallight.com
palmbayspritz.ca
*.palmbayspritz.ca
*.pilsenersv.com
rollingrock.com
*.rollingrock.com
samennaarsucces-retail.nl
*.samennaarsucces-retail.nl
smartbarley.com
*.smartbarley.com
stellaartois.com
*.stellaartois.com
*.stellaartois.eu
stellatransformertable.ca
*.stellatransformertable.ca
tapmeesters.nl
*.tapmeesters.nl
members.teamultra.com
tennentssuper.it
*.tennentssuper.it
theciderhouse.ca
www.theciderhouse.ca
theritas.com
*.theritas.com
qr.tripelkarmeliet.com
*.qr.tripelkarmeliet.com
viaromabeer.com
*.viaromabeer.com
warmspringsranch.com
*.warmspringsranch.com
find.wickedweedbrewing.com
wickedweedbrewing.com
*.wickedweedbrewing.com
*.club.dev.zedelivery.in
*.club.zedelivery.in
Other domains in certificate