Summary of ams.allophone.net:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 41 days ago and may be outdated
Refresh Test
Date/Time:Aug 3rd, 2026 11:24 GMT+0
Source IP/Port:72.46.62.96:443
Protocol:HTTPS
Location:Lincoln, United States
Your final score:
- A
- B
- C
- F
C+
Test Results Summary for ams.allophone.net
- The server on the tested port is currently not prepared for post-quantum key exchange. The server’s certificate chain relies entirely on classical signature algorithms without post-quantum support. Show details.
- 1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer YR1 valid until September 27, 2026. 1 certificate chain detected. Show details.
- All 4 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2. The server supports PCI DSS compliant elliptic curves (P-384, P-521 and P-256) as well as non-compliant elliptic curves (secp256k1). No additional PCI DSS compliance issues were identified. Show details.
- All 4 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2. The server supports HIPAA compliant elliptic curves (P-384, P-521 and P-256) as well as non-compliant elliptic curves (secp256k1). There are 3 more issues which make the server non-compliant with HIPAA: certificate does not include an OCSP responder url, server does not support TLS 1.3, server does not support extended master sECret. Show details.
- 3 issues related to industry best practices were identified: server does not support TLS 1.3, server does not have cipher preference, server does not provide HSTS. Show details.
Compliance Summary for ams.allophone.net
- PCI DSS Compliance Failed: All 4 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2. The server supports PCI DSS compliant elliptic curves (P-384, P-521 and P-256) as well as non-compliant elliptic curves (secp256k1). No additional PCI DSS compliance issues were identified.
- HIPAA Compliance Failed: All 4 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2. The server supports HIPAA compliant elliptic curves (P-384, P-521 and P-256) as well as non-compliant elliptic curves (secp256k1). There are 3 more issues which make the server non-compliant with HIPAA: certificate does not include an OCSP responder url, server does not support TLS 1.3, server does not support extended master sECret.
- GDPR Compliance Failed: All 4 supported cipher suites are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2. The server supports GDPR compliant elliptic curves (P-384, P-521 and P-256) as well as non-compliant elliptic curves (secp256k1). No additional GDPR compliance issues were identified.