Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=imperva.com
Issuer
C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2025 Q4
Valid From
October 26, 2025
Valid Until
April 24, 2026
98 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C6:50:48:5F:3F:9C:0D:73:2C:0E:56:E1:75:32:0E:F6:B8:6F:41:E0:78:F6:4E:AA:FA:24:9A:A2:68:F9:55:C9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
150 domains
operatorilocali.it
www-cert.operatorilocali.it
www.operatorilocali.it
reservations.abyadina.com
flight-cert.airmalta.com
reservations.angsana.com
reservations.banyantree.com
reservations.bastidedeloliveraie.com
reservations.belmond.com
reservation.chevalblanc.com
lowcostil.co.il
www.lowcostil.co.il
discoversabre.com
www.discoversabre.com
eticketreports.com
www-cert.eticketreports.com
www.eticketreports.com
booking-cert.flyasky.com
booking-stage.flyasky.com
checkin-cert.flyasky.com
checkin-stage.flyasky.com
checkin.flyasky.com
dc-cert.flyasky.com
dc.flyasky.com
dcci-cert.flyasky.com
dcci.flyasky.com
dxbooking.flyasky.com
dxbookings-cert.gulfair.com
shr.booking.hoiana.com
shr.booking.hoianasuncity.com
booking.hotelrez.co.uk
imperva.com
res.itchotels.com
reservations.lerempart.com
book.macdonaldhotels.co.uk
booking.ninahotelgroup.com
reservations.onomohotels.com
booking.princesaplaza.com
reservations.quincymelbourne.com
pch.appota.radixxcert.com
pch.dcs.radixxcert.com
pch.res.radixxcert.com
dem.app.radixxhost.com
vtl.appota.radixxhost.com
vtl.dcs.radixxhost.com
7h-ro-c1.avro.cert.aws.sabre.com
7h-ro.avro.cert.aws.sabre.com
a3-ro-c1.avro.cert.aws.sabre.com
a3-ro.avro.cert.aws.sabre.com
*.api.cert.sabre.com
*.api.sabre.com
*.as.cert.asc.sabre.com
*.as.dev.asc.sabre.com
avelo-api.ezycommerce.sabre.com
*.avri.as.cert.asc.sabre.com
*.avri.as.prod.asc.sabre.com
bw-ro-c1.avro.cert.aws.sabre.com
bw-ro.avro.cert.aws.sabre.com
callcenter-8u-ut2.sabre.com
cert.documents.sabre.com
*.cert.sabre.com
cert.set.sabre.com
cert.stc.sabre.com
csd.security-reporting.int.sabre.com
dev.set.sabre.com
et-ro-c1.avro.cert.aws.sabre.com
et-ro.avro.cert.aws.sabre.com
*.eu-west-1.as.prod.sabre.com
ey-ro-c1.avro.cert.aws.sabre.com
ey-ro.avro.cert.aws.sabre.com
g3-1.avro.prod.sabre.com
g3.avro.prod.sabre.com
g3.experimentadmin-cert.sabre.com
identity.int.sabre.com
l1.experimentadminstai-cert.sabre.com
la-ro-c1.avro.cert.aws.sabre.com
la-ro.avro.cert.aws.sabre.com
*.marketforecast.sabre.com
mn-ro-c1.avro.cert.aws.sabre.com
mn-ro.avro.cert.aws.sabre.com
*.my.cert.sabre.com
nt-ro-c1.avro.cert.aws.sabre.com
nt-ro.avro.cert.aws.sabre.com
ou-ro-c1.avro.cert.aws.sabre.com
ou-ro.avro.cert.aws.sabre.com
pg-ro-c1.avro.cert.aws.sabre.com
pg-ro.avro.cert.aws.sabre.com
pg.crp.as.cert.asc.sabre.com
pm-ro-c1.avro.cert.aws.sabre.com
pm-ro.avro.cert.aws.sabre.com
proration-engine.sabre.com
pwsair.int.sabre.com
*.sabre.com
safair-ext-api-ase1.ezycommerce.sabre.com
siteadmin-perf.as.dev.asc.sabre.com
siteadmin-sat2.as.dev.asc.sabre.com
stc.sabre.com
su-ro-c1.avro.cert.aws.sabre.com
su-ro.avro.cert.aws.sabre.com
synack-ro.avro.cert.aws.sabre.com
tmg2-us-central2.sabre.com
tmg3-us-central2.sabre.com
tmg4-us-central2.sabre.com
upr.security-reporting.int.sabre.com
vn-ro-c1.avro.cert.aws.sabre.com
vn-ro.avro.cert.aws.sabre.com
webb6.ri.sabre.com
webjtcert.avri.as.cert.asc.sabre.com
webjtprod.avri.as.prod.asc.sabre.com
webpmp.b6.ri.cert.sabre.com
webpmp.b6.ri.sabre.com
webpmp.kp.ri.cert.sabre.com
webpmp.kp.ri.sabre.com
webpmp.tg.ix.cert.sabre.com
webpmp.tg.ix.sabre.com
webpmp.zn.ri.cert.sabre.com
webqa.tg.ix.cert.sabre.com
webtest.tg.ix.cert.sabre.com
webtg.ix.sabre.com
ws-ro-c1.avro.cert.aws.sabre.com
ws-ro-c1.avro.prod.aws.sabre.com
www.a301.euw3.cert.planning-optimization.sabre.com
www.ac01.usc1.cert.planning-optimization.sabre.com
www.b601.usc1.cert.planning-optimization.sabre.com
www.cm01.usc1.planning-optimization.sabre.com
www.sy01.usc1.planning-optimization.sabre.com
www.xe01.usc1.cert.planning-optimization.sabre.com
wy-ro-c1.avro.cert.aws.sabre.com
wy-ro.avro.cert.aws.sabre.com
sabrereporting.prd.aws.sabrenow.com
be-c1.synxis.com
be-cms-c1.synxis.com
sip-dashboard-c1.synxis.com
synxis.com
www.synxis.com
reservations.themutinyhotel.com
bookings.villaresorts.com
partners.villaresorts.com
reservations.whitepod.com
be.yukai-r.jp
dc-cert.zambia-airways.com
dc.zambia-airways.com
dcci-cert.zambia-airways.com
dcci.zambia-airways.com
dxbooking-cert.zambia-airways.com
dxbooking-stage.zambia-airways.com
dxbooking.zambia-airways.com
dxci-cert.zambia-airways.com
dxci-stage.zambia-airways.com
dxci.zambia-airways.com
Other domains in certificate