SSL Security Test of smtp.google.com

Test SSL/TLS of your web or email servers for security, PCI DSS, HIPAA & NIST compliance
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, HIPAA & NIST Compliance
  • SSL Certificate Test Validity
  • Best-Practices Compliance
Free online tool with PDF report
179,620,431 tests performed
Provided "as is" without any warranty of any kind
189
tests
running
57,354
tests
in 24 hours
Tests in 24 Hours

Summary of smtp.google.com:25 (SMTP) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 70 days ago and may be outdated
Refresh Test
Date/Time:Jan 21st, 2026 10:07 GMT+0
Source IP/Port:142.250.31.27:25
Protocol:SMTP
Location:Mount Hope, United StatesUnited States
Your final score:
  • A
  • B
  • C
  • F
B

Executive Summary for smtp.google.com

  • Post-Quantum Cryptography (PQC) Readiness Test
    This server on the tested port supports only hybrid ML-KEM key exchange groups, which are recommended by NIST for the transition period. The server’s certificate chain relies entirely on classical signature algorithms without post-quantum support. Show details.
  • SSL/TLS Certificate Analysis
    4 certificate chain(s) detected. Show details.
  • PCI DSS Compliance Test
    4 of 15 supported cipher suites are not compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.2 and TLSv1.3) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with PCI DSS: P-256 and X25519. There are 1 more issue(s) which make the server non-compliant with PCI DSS: potential Marvin Attack. Show details.
  • NIST and HIPAA Compliance Test
    5 of 15 supported cipher suites are not compliant with NIST and HIPAA. The server supports NIST and HIPAA compliant protocols (TLSv1.2 and TLSv1.3) as well as non-compliant protocols (TLSv1.0 and TLSv1.1). All supported elliptic curves are compliant with NIST and HIPAA: P-256 and X25519. There are 1 more issue(s) which make the server non-compliant with NIST and HIPAA: server does not support OCSP stapling. Show details.
  • Industry Best Practices Test
    No issues related to industry best practices were identified. Show details.

Need Even More? Upgrade to ImmuniWeb® AI Platform

Get x10 more findings with 24/7 remediation support and ensure compliance:

Please wait. Data is loading...
Please wait. Data is loading...