Open
Cached
·
just now
88/100
SECURITY SCORE
Certificate Information
Subject
CN=imperva.com
Issuer
C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2025 Q4
Valid From
November 08, 2025
Valid Until
May 07, 2026
151 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:29:6C:60:B3:3A:34:33:6C:8C:07:68:05:6A:DD:B3:44:E8:1D:93:74:E2:6D:CC:D7:15:D2:F1:95:EB:A6:A4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Basic
default-src; img-src; font-src
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
151 domains
gestiongrip.com
*.gestiongrip.com
*.cit.aw.navigatetax.pwc.co.in
*.einvoice.aw.navigatetax.pwc.co.in
*.gbi-aws.pwc.co.in
*.irnaws.navigatetax.pwc.co.in
*.managementdataplatform.pwc.co.in
*.ms.einvoice.az.navigatetax.pwc.co.in
*.walmart.einvoice.az.navigatetax.pwc.co.in
illuminate-data.org.uk
*.illuminate-data.org.uk
imperva.com
*.dev.machineq.net
*.machineq.net
*.origincompliance.com
*.outcome-plus.com
pensionlive.com
*.pensionlive.com
pwc-fincrime.cz
*.pwc-fincrime.cz
*.pwc-sg.com
*.bandieincentivi.digitalsuite.pwc-tls.it
*.pwc.be
*.assets.pwc.ch
*.prod.pwc.ch
*.stage.pwc.ch
*.staging.pwc.co.nz
*.admin.clubhealthcheck.rfu.pwc.co.uk
*.api.pwc.co.uk
*.clubhealthcheck.rfu.pwc.co.uk
*.datathread.pwc.co.uk
*.dev.pwc.co.uk
*.gbt-preview.pwc.co.uk
*.gbt-stg.pwc.co.uk
*.optimisationenginestaging.pwc.co.uk
*.pwc.co.uk
*.rfu.pwc.co.uk
*.staging-api.pwc.co.uk
*.accesscheck.pwc.com
*.admin.dev.connectedriskengine.pwc.com
*.admin.staging.connectedriskengine.pwc.com
*.api.economicsubtance.trackingsuite.pwc.com
*.api.engagements.transferpricing.pwc.com
*.api.staging.connectedriskengine.pwc.com
*.au.pwc.com
*.blockchaincustodytracker.jp.pwc.com
*.businessriskinsights.pwc.com
*.co.pwc.com
*.datamodellingplatform.africa.pwc.com
*.demo.proedge.pwc.com
*.dev.asiapacific.pwc.com
*.development.digitaltraceability.jp.pwc.com
*.development.id.pwc.com
*.development.kr.pwc.com
*.development.sg.pwc.com
*.development.th.pwc.com
*.development.vn.pwc.com
*.digitalmaker.jp.pwc.com
*.digitaltraceability.jp.pwc.com
*.digitalworklife.stage.africa.pwc.com
*.docbot.pwc.com
*.ecmfe.transferpricing.pwc.com
*.ei-analytics-apvr.pwc.com
*.ei-analytics-dkrx.pwc.com
*.ei-analytics-uqcj.pwc.com
*.ei-analytics-xsus.pwc.com
*.einvoicing.pl.pwc.com
*.engagements.transferpricing.pwc.com
*.enterprisecontrol.demo.pwc.com
*.entityops.pwc.com
*.esgrealestatetool.de.pwc.com
*.estatutotributario.api.co.pwc.com
*.eu.edge.itx.pwc.com
*.eu.stg.edge.itx.pwc.com
*.footballplayervaluation.pwc.com
*.futurecapabilitiesplatform.pwc.com
*.hana-1.prod.ec.hosting.pwc.com
*.hosting.pwc.com
*.id.pwc.com
*.id.stage.uk.pwc.com
*.in.pwc.com
*.insights.pwc.com
*.intelligentauditor.pwc.com
*.internalreportingplatform.jp.pwc.com
*.jp.pwc.com
*.labassistance.jp.pwc.com
*.managedservices.securityandcontrols.pwc.com
*.mer.pwc.com
*.mer.staging.pwc.com
*.middleeastsurvey.pwc.com
*.mt.pwc.com
*.nga-qa.pwc.com
*.proedge.pwc.com
*.pwc.com
*.readyassess.pwc.com
*.reportingsuite.transferpricing.pwc.com
*.staging.digitaltraceability.jp.pwc.com
*.staging.middleeastsurvey.pwc.com
*.staging.pwc.com
*.stg.mx.pwc.com
*.stg.us.pwc.com
*.tmp.pwc.com
*.transparencyinsights.pwc.com
*.uk.pwc.com
*.us.reports.transferpricing.pwc.com
*.web.staging.connectedriskengine.pwc.com
*.ytc.pwc.com
*.za.pwc.com
*.pwc.com.ar
*.dev.cft.pwc.com.au
*.pwc.com.au
*.pwc.com.br
dev.entgeltkalkulator.pwc.de
sts.ccp-stage.pwc.de
pwc.es
*.pwc.es
*.applicationinventorymanagement.pwc.in
*.bharatividyapeeth.integratededucation.pwc.in
*.contractinsights.editor.pwc.in
*.contractinsights.pwc.in
*.integratededucation.pwc.in
*.investorsrelationshub.pwc.in
*.newbank-analytics.sit.internal.pwc.in
*.newbank.sit.internal.pwc.in
*.newbank.test.internal.pwc.in
*.newbankmob.sit.internal.pwc.in
*.newbankmob.uat.internal.pwc.in
*.pwc.in
*.ssodl.integratededucation.pwc.in
*.pwc.it
*.pwc.lu
*.descargacfdi.tax.pwc.mx
service.descargacfdi.tax.pwc.mx
*.demo.pwc.nl
*.sustainablefinancetaxonomytool.pwc.nl
*.services.pwc.no
*.transparencychain.pwc.no
*.admin-dev.pwc.pe
*.stage.ctech.pwc.pl
*.stage.hycs.pwc.pl
*.taxolite.pwc.pl
*.transferpricingscoring.pwc.pl
*.ubis.tts.pwc.pl
*.pwc.pt
*.pwc.se
pwccn.com
*.pwccn.com
sagenceconsulting.com
*.sagenceconsulting.com
*.taxpooling.co.nz
*.terraininsights.net
Other domains in certificate