Summary of abtest-ali-tokyo-01.saas.sensorsdata.cn:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 462 days ago and may be outdated
Refresh Test
Date/Time:May 27th, 2025 08:34 GMT+0
Source IP/Port:8.209.201.39:443
Protocol:HTTPS
Location:Tokyo, Japan
Your final score:
- A
- B
- C
- F
C+
Test Results Summary for abtest-ali-tokyo-01.saas.sensorsdata.cn
- 1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer RapidSSL Global TLS RSA4096 SHA256 2022 CA1 valid until December 28, 2025. 1 certificate chain detected. Show details.
- 1 of 13 supported cipher suites is not compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.2) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with PCI DSS: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with PCI DSS: potential Marvin Attack. Show details.
- 1 of 13 supported cipher suites is not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with HIPAA: P-256, P-521, P-384, X25519 and X448. There are 2 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, server does not support TLS 1.3. Show details.
- 3 issues related to industry best practices were identified: server does not support TLS 1.3, HTTP site does not redirect to the HTTPS version, server does not provide HSTS. Show details.
Compliance Summary for abtest-ali-tokyo-01.saas.sensorsdata.cn
- PCI DSS Compliance Failed: 1 of 13 supported cipher suites is not compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.2) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with PCI DSS: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with PCI DSS: potential Marvin Attack.
- HIPAA Compliance Failed: 1 of 13 supported cipher suites is not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with HIPAA: P-256, P-521, P-384, X25519 and X448. There are 2 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, server does not support TLS 1.3.
- GDPR Compliance Failed: 1 of 13 supported cipher suites is not compliant with GDPR. The server supports GDPR compliant protocols (TLSv1.2) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with GDPR: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with GDPR: potential Marvin Attack.