SSL Security Test of
legality.site

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
187,221,764 tests performed
Provided "as is" without any warranty of any kind
369
tests
running
156,167
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of legality.site:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 529 days ago and may be outdated
Refresh Test
Date/Time:Apr 20th, 2025 08:28 GMT+0
Source IP/Port:62.72.45.66:443
Protocol:HTTPS
Location:N/A, GermanyGermany
Your final score:
  • A
  • B
  • C
  • F
A+
The server supports the most recent and secure TLS protocol version of TLS 1.3.
Good configuration

Test Results Summary for legality.site

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 4096 bits certificate with issuer R11 valid until June 27, 2025. 1 certificate chain detected. Show details.
  • PCI DSS Compliance Test
    All 5 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384 and X25519. No additional PCI DSS compliance issues were identified. Show details.
  • NIST and HIPAA Compliance Test
    All 5 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384 and X25519. No additional HIPAA compliance issues were identified. Show details.
  • Industry Best Practices Test
    1 issue related to industry best practices was identified: server provides deprECated HPKP header. Show details.

Compliance Summary for legality.site

  • PCI DSS Compliance Passed: All 5 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384 and X25519. No additional PCI DSS compliance issues were identified.
  • HIPAA Compliance Passed: All 5 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384 and X25519. No additional HIPAA compliance issues were identified.
  • GDPR Compliance Passed: All 5 supported cipher suites are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with GDPR: P-256, P-384 and X25519. No additional GDPR compliance issues were identified.

PDF Certificate and Badge

Please wait. Data is loading...
Share this report: