Summary of pentest.mid.as:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 417 days ago and may be outdated
Refresh Test
Date/Time:Jul 21st, 2025 12:18 GMT+0
Source IP/Port:104.26.4.228:443
Protocol:HTTPS
Location:N/A, N/A
Your final score:
- A
- B
- C
- F
A
Test Results Summary for pentest.mid.as
- 2 SSL/TLS end-entity certificates detected: the first certificate is a trusted RSA 2048 bits certificate with issuer WR1 valid until September 23, 2025; the second certificate is a trusted ECDSA 256 bits certificate with issuer WE1 valid until September 23, 2025. 5 certificate chains detected. Show details.
- 6 of 21 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with PCI DSS: potential Marvin Attack. Show details.
- 7 of 21 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384, P-521 and X25519. No additional HIPAA compliance issues were identified. Show details.
- No issues related to industry best practices were identified. Show details.
Compliance Summary for pentest.mid.as
- PCI DSS Compliance Failed: 6 of 21 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with PCI DSS: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with PCI DSS: potential Marvin Attack.
- HIPAA Compliance Failed: 7 of 21 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with HIPAA: P-256, P-384, P-521 and X25519. No additional HIPAA compliance issues were identified.
- GDPR Compliance Failed: 6 of 21 supported cipher suites are not compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2 and TLSv1.3. All supported elliptic curves are compliant with GDPR: P-256, P-384, P-521 and X25519. There is 1 more issue which makes the server non-compliant with GDPR: potential Marvin Attack.


