SSL Security Test of
ac.ecosia.org

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
186,706,020 tests performed
Provided "as is" without any warranty of any kind
394
tests
running
133,404
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of ac.ecosia.org:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
Date/Time:Sep 17th, 2026 05:51 GMT+0
Source IP/Port:172.64.150.71:443
Protocol:HTTPS
Location:Unknown
Your final score:
  • A
  • B
  • C
  • F
A
The server supports the most recent and secure TLS protocol version of TLS 1.3.
Good configuration

Test Results Summary for ac.ecosia.org

  • Post-Quantum Cryptography (PQC) Readiness Test
    This server on the tested port supports only hybrid ML-KEM key exchange groups, which are recommended by NIST for the transition period. The server’s certificate chain relies entirely on classical signature algorithms without post-quantum support. Show details.
  • SSL/TLS Certificate Analysis
    2 SSL/TLS end-entity certificates detected: the first certificate is a trusted RSA 2048 bits certificate with issuer WR1 valid until October 25, 2026; the second certificate is a trusted ECDSA 256 bits certificate with issuer WE1 valid until October 25, 2026. 5 certificate chains detected. Show details.
  • PCI DSS Compliance Test
    6 of 21 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with PCI DSS: potential Marvin Attack. Show details.
  • NIST and HIPAA Compliance Test
    7 of 21 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with HIPAA: certificate does not include an OCSP responder url. Show details.
  • Industry Best Practices Test
    No issues related to industry best practices were identified. Show details.

Compliance Summary for ac.ecosia.org

  • PCI DSS Compliance Failed: 6 of 21 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with PCI DSS: potential Marvin Attack.
  • HIPAA Compliance Failed: 7 of 21 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with HIPAA: certificate does not include an OCSP responder url.
  • GDPR Compliance Failed: 6 of 21 supported cipher suites are not compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with GDPR: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with GDPR: potential Marvin Attack.

PDF Certificate and Badge

Please wait. Data is loading...
Share this report: