Open
Cached
·
just now
78/100
SECURITY SCORE
Certificate Information
Subject
CN=dpdgroup.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
September 01, 2025
Valid Until
November 30, 2025
15 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2D:75:AB:EF:2A:4A:17:E9:08:EA:37:AC:A2:61:00:CD:C4:B0:9D:3F:9C:6A:AD:AF:49:EC:2E:5A:AB:BF:13:63
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
99 domains
dpd.co.uk
api-customerchat.dpd.co.uk
as2.dpd.co.uk
business-continuity.dpd.co.uk
consumers.dpd.co.uk
design-system.dpd.co.uk
drivers.dpd.co.uk
green.dpd.co.uk
help.dpd.co.uk
jobs.dpd.co.uk
leavers.dpd.co.uk
life.dpd.co.uk
now.dpd.co.uk
qa5-api.dpd.co.uk
send.dpd.co.uk
sustainability.dpd.co.uk
warehouse.dpd.co.uk
www.dpd.co.uk
api.customers.dpd.co.uk
apis.collections.dpd.co.uk
apis.consumers.dpd.co.uk
apis.green.dpd.co.uk
apis.international.dpd.co.uk
apis.my.dpd.co.uk
apis.myaddressbook.dpd.co.uk
apis.myadmin.dpd.co.uk
apis.mycollections.dpd.co.uk
apis.mydeliveries.dpd.co.uk
apis.myproductbook.dpd.co.uk
apis.myreturns.dpd.co.uk
apis.myshipments.dpd.co.uk
apis.send.dpd.co.uk
apis.track.dpd.co.uk
apis.yourdpd.dpd.co.uk
dev-api.customers.dpd.co.uk
international.ai.dpd.co.uk
myportal.drivers.dpd.co.uk
api.international.ai.dpd.co.uk
agr-api.dpdgroup.co.uk
amrockstars.dpdgroup.co.uk
api-chatbot.dpdgroup.co.uk
api.ai.dpdgroup.co.uk
apis.consumers.dpdgroup.co.uk
app.dpdgroup.co.uk
app1.dpdgroup.co.uk
cat-api.dpdgroup.co.uk
cat.dpdgroup.co.uk
chat.operations.api.ai.dpdgroup.co.uk
chatbot.dpdgroup.co.uk
data.dpdgroup.co.uk
dpdgroup.co.uk
eaa-idp.dpdgroup.co.uk
identity-security.dpdgroup.co.uk
identity.dpdgroup.co.uk
infosec.dpdgroup.co.uk
it.dpdgroup.co.uk
leavers.dpdgroup.co.uk
mybenefits.dpdgroup.co.uk
operations-ai.dpdgroup.co.uk
poc.dpdgroup.co.uk
qa3-api.dpdgroup.co.uk
qa3-rb-api.dpdgroup.co.uk
qa5-agr-api.dpdgroup.co.uk
qa5-api.dpdgroup.co.uk
qa5-rb-api.dpdgroup.co.uk
rb-api.dpdgroup.co.uk
rdt.dpdgroup.co.uk
uat-api.dpdgroup.co.uk
uat-rb-api.dpdgroup.co.uk
volume-sim.operations.api.ai.dpdgroup.co.uk
wcs.dpdgroup.co.uk
www.dpdgroup.co.uk
dpdlocal-online.co.uk
www.dpdlocal-online.co.uk
apis.collections.dpdlocal.co.uk
apis.my.dpdlocal.co.uk
apis.myaddressbook.dpdlocal.co.uk
apis.myadmin.dpdlocal.co.uk
apis.mycollections.dpdlocal.co.uk
apis.mydeliveries.dpdlocal.co.uk
apis.myproductbook.dpdlocal.co.uk
apis.myreturns.dpdlocal.co.uk
apis.myshipments.dpdlocal.co.uk
apis.track.dpdlocal.co.uk
dpdlocal.co.uk
now.dpdlocal.co.uk
www.dpdlocal.co.uk
cat-api.geopostuk.com
geopostuk.com
media.geopostuk.com
qa3-api.geopostuk.com
qa5-api.geopostuk.com
test-apps.geopostuk.com
uat-api.geopostuk.com
vehiclerepairsportal.geopostuk.com
wcs.geopostuk.com
www.geopostuk.com
interlinkexpress.com
www.interlinkexpress.com
Other domains in certificate