Summary of self-signed.badssl.com:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 60 days ago and may be outdated
Refresh Test
Date/Time:Feb 7th, 2026 12:58 GMT+0
Source IP/Port:104.154.89.105:443
Protocol:HTTPS
Location:Council Bluffs, United States
Your final score:
- A
- B
- C
- F
F
Executive Summary for self-signed.badssl.com
- The server on the tested port is not currently prepared for post-quantum key exchange. The server’s certificate chain relies entirely on classical signature algorithms without post-quantum support. Show details.
- 1 certificate chain(s) detected. Show details.
- 10 of 24 supported cipher suites are not compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.2) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with PCI DSS: P-256. There are 2 more issue(s) which make the server non-compliant with PCI DSS: certificates are untrusted, potential Marvin Attack. Show details.
- 12 of 24 supported cipher suites are not compliant with NIST and HIPAA. The server supports NIST and HIPAA compliant protocols (TLSv1.2) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with NIST and HIPAA: P-256. There are 4 more issue(s) which make the server non-compliant with NIST and HIPAA: certificates are self-signed, certificate does not provide OCSP revocation information, server does not support TLS 1.3, server does not support extended master sECret. Show details.
- 2 issue(s) related to industry best practices were identified: s. Show details.