Our ongoing commitment to PCI DSS compliance and secure web hosting practices.
| Category | Security Element | Status |
|---|---|---|
| SSL / TLS | SSL Mode: Full (Strict) | Active ✅ |
| TLS Versions: 1.2 / 1.3 | Enabled ✅ | |
| Perfect Forward Secrecy | Enabled ✅ | |
| Certificate Authority | Cloudflare ECC CA-3 ✅ | |
| OCSP Stapling | Enabled ✅ | |
| SSL Labs Grade | A+ ✅ | |
| Min TLS Version | 1.2 ✅ | |
| HTTPS & HSTS | Always Use HTTPS | Enabled ✅ |
| HSTS Header | Active (1 year + preload) | |
| Preload List | Submitted ✅ | |
| Include Subdomains | Yes ✅ | |
| Opportunistic Encryption | Enabled ✅ | |
| Email Security | SPF Record | Valid ✅ |
| DKIM | Configured ✅ | |
| DMARC Policy | Active (p=quarantine) | |
| MX / Reverse DNS | Pass ✅ | |
| Cloudflare Security | WAF (Free Ruleset) | Active ✅ |
| Bot Fight Mode | Enabled ✅ | |
| DDoS Protection | Automatic ✅ | |
| Rate Limiting | Recommended ⚙️ | |
| Access Control | SSH Access | Key-based only ✅ |
| MFA for Admin | Recommended ⚙️ | |
| cPanel / WHM | HTTPS only ✅ | |
| Password Policy | Strong / Enforced ✅ |
Last verified: October 28, 2025
This page summarizes ValueWay LLC’s security posture and PCI DSS compliance readiness.
For detailed disclosure, see: security-checklist.txt.