Security Checklist

Our ongoing commitment to PCI DSS compliance and secure web hosting practices.

PCI DSS Secure Hosting Verified
Category Security Element Status
SSL / TLS SSL Mode: Full (Strict) Active ✅
TLS Versions: 1.2 / 1.3 Enabled ✅
Perfect Forward Secrecy Enabled ✅
Certificate Authority Cloudflare ECC CA-3 ✅
OCSP Stapling Enabled ✅
SSL Labs Grade A+ ✅
Min TLS Version 1.2 ✅
HTTPS & HSTS Always Use HTTPS Enabled ✅
HSTS Header Active (1 year + preload)
Preload List Submitted ✅
Include Subdomains Yes ✅
Opportunistic Encryption Enabled ✅
Email Security SPF Record Valid ✅
DKIM Configured ✅
DMARC Policy Active (p=quarantine)
MX / Reverse DNS Pass ✅
Cloudflare Security WAF (Free Ruleset) Active ✅
Bot Fight Mode Enabled ✅
DDoS Protection Automatic ✅
Rate Limiting Recommended ⚙️
Access Control SSH Access Key-based only ✅
MFA for Admin Recommended ⚙️
cPanel / WHM HTTPS only ✅
Password Policy Strong / Enforced ✅

Last verified: October 28, 2025
This page summarizes ValueWay LLC’s security posture and PCI DSS compliance readiness.
For detailed disclosure, see: security-checklist.txt.