Summary of legality.co.id:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 252 days ago and may be outdated
Refresh Test
Date/Time:Jan 22nd, 2026 13:16 GMT+0
Source IP/Port:41.216.185.84:443
Protocol:HTTPS
Location:Diamandveld, South Africa
Your final score:
- A
- B
- C
- F
A
The server supports the most recent and secure TLS protocol version of TLS 1.3.
Good configuration
Test Results Summary for legality.co.id
- The server on the tested port is currently not prepared for post-quantum key exchange. The server’s certificate chain relies entirely on classical signature algorithms without post-quantum support. Show details.
- 1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer R13 valid until April 22, 2026. 1 certificate chain detected. Show details.
- All 5 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384 and X25519. No additional PCI DSS compliance issues were identified. Show details.
- 1 of 5 supported cipher suites is not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384 and X25519. There is 1 more issue which makes the server non-compliant with HIPAA: certificate does not include an OCSP responder url. Show details.
- 1 issue related to industry best practices was identified: server provides deprECated HPKP header. Show details.
Compliance Summary for legality.co.id
- PCI DSS Compliance Passed: All 5 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384 and X25519. No additional PCI DSS compliance issues were identified.
- HIPAA Compliance Failed: 1 of 5 supported cipher suites is not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384 and X25519. There is 1 more issue which makes the server non-compliant with HIPAA: certificate does not include an OCSP responder url.
- GDPR Compliance Passed: All 5 supported cipher suites are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with GDPR: P-256, P-384 and X25519. No additional GDPR compliance issues were identified.


