SSL Security Test of mozilla.com

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
181,445,886 tests performed
Provided "as is" without any warranty of any kind
200
tests
running
56,878
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of mozilla.com:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
Date/Time:May 24th, 2026 11:55 GMT+0
Source IP/Port:35.190.14.201:443
Protocol:HTTPS
Location:Mount Hope, United StatesUnited States
Your final score:
  • A
  • B
  • C
  • F
B+

Executive Summary for mozilla.com

  • Post-Quantum Cryptography (PQC) Readiness Test
    The server on the tested port is not currently prepared for post-quantum key exchange. The server’s certificate chain relies entirely on classical signature algorithms without post-quantum support. Show details.
  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate(s) detected: the first certificate is a trusted RSA 2048 bits certificate with issuer WR3 valid until July 9, 2026. 2 certificate chain(s) detected. Show details.
  • PCI DSS Compliance Test
    5 of 12 supported cipher suites are not compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.2 and TLSv1.3) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with PCI DSS: P-256, P-384 and X25519. There are 1 more issue(s) which make the server non-compliant with PCI DSS: potential Marvin Attack. Show details.
  • NIST and HIPAA Compliance Test
    6 of 12 supported cipher suites are not compliant with NIST and HIPAA. The server supports NIST and HIPAA compliant protocols (TLSv1.2 and TLSv1.3) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with NIST and HIPAA: P-256, P-384 and X25519. There are 1 more issue(s) which make the server non-compliant with NIST and HIPAA: server does not support OCSP stapling. Show details.
  • Industry Best Practices Test
    No issues related to industry best practices were identified. Show details.
Please wait. Data is loading...
Please wait. Data is loading...
Share this report: