Open
Cached
·
just now
82/100
SECURITY SCORE
Certificate Information
Subject
CN=imperva.com
Issuer
C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2025 Q3
Valid From
August 06, 2025
Valid Until
February 02, 2026
15 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
36:45:88:A5:7E:62:0D:42:BF:B2:45:0B:A3:1F:30:70:1E:A2:9F:22:DE:1A:13:EC:9C:0A:B8:89:9A:D3:5E:8F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
geolocation=(self), speaker=(self)
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
68 domains
hrbasicsonline.com
*.hrbasicsonline.com
accountportal.net
*.accountportal.net
accuagency.com
*.accuagency.com
advisen.com
*.advisen.com
*.agencymatrix.com
brokeragebuilder.com
*.brokeragebuilder.com
clientportalonline.com
*.clientportalonline.com
codesixfour.com
*.codesixfour.com
dmwarehouse.com
*.dmwarehouse.com
*.getitc.com
hr360.com
*.hr360.com
hrconnection.com
*.hrconnection.com
imperva.com
inscontact.com
*.inscontact.com
*.insurancewebsitebuilder.com
itccarrierrates.com
*.itccarrierrates.com
itcdataservices.com
*.itcdataservices.com
itcratingservices.com
*.itcratingservices.com
iwantinsurance.com
*.iwantinsurance.com
*.quotes.iwantinsurance.com
miedge.biz
*.miedge.biz
miedge.net
*.miedge.net
modmaster.com
*.modmaster.com
myinsportal.com
*.myinsportal.com
mywaveelements.com
*.mywaveelements.com
*.onzywave.co.uk
*.onzywave.com
partnerxe.com
*.partnerxe.com
*.portal.partnerxe.com
*.sisportal-dev.partnerxe.com
*.sisportal-prod.partnerxe.com
*.sisportal-qa.partnerxe.com
planadvisor.com
*.planadvisor.com
plandocbuilder.com
*.plandocbuilder.com
*.proposal.insure
ratefactory.com
*.ratefactory.com
secureclient.net
*.secureclient.net
turborater.com
*.turborater.com
*.wrap360.com
*.zywave.co.uk
*.portal.zywave.com
*.zywave.com
Other domains in certificate