SIGNAL.ORG - SSL

SSL Certificate Overview

Certificate Status
Valid & Trusted
Certificate Authority
WE1
Security Grade
A
Days Until Expiry
66 days

Security Assessment Summary

A
Overall Security Grade
2/6
Secure Protocols
8
Security Headers

Security Recommendations:

  • ✅ Strong TLS 1.3 and TLS 1.2 protocol support
  • ✅ Modern cipher suites with forward secrecy
  • ✅ Comprehensive security headers implementation
  • ✅ Valid certificate chain and trusted issuer
  • Monitor certificate expiration and renew timely

About signal.org

Type
Organization
Organization
Registrar
Nameservers
Hosting Provider
Cloudflare, Inc.
Server Location
Toronto, Ontario, Canada
ASN
AS13335 CLOUDFLARENET
HSTS CSP X-Frame-Options X-Content-Type-Options Referrer-Policy

Certificate Details & Validation

Issue Date
2025-07-18 13:30:33
Expiration Date
2025-10-16 14:30:26
Serial Number
15669964608161610566404976976903609509
Key Strength
256 bit RSA
Fingerprint (SHA1)
13:8B:20:64:16:D0:8C:53:43:F9:1E:53:13:1A:15:D7:79:4B:6D:F7
Certificate Chain
Certificate chain

TLS/SSL Protocol Support Analysis

TLSv1.3
Enabled
Latest & Most Secure
TLSv1.2
Enabled
TLSv1.1
Disabled
TLSv1.0
Disabled
Properly Disabled (Security)
SSLv3
Disabled
Properly Disabled (Security)
SSLv2
Disabled
Properly Disabled (Security)

HTTP Security Headers Analysis

Strict-Transport-Security Present
max-age=31536000; includeSubDomains; preload
X-Frame-Options Present
SAMEORIGIN
X-Content-Type-Options Present
nosniff
X-XSS-Protection Present
1; mode=block
Content-Security-Policy Present
default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline';
Referrer-Policy Present
strict-origin-when-cross-origin
X-Permitted-Cross-Domain-Policies Present
none
Expect-CT Present
enforce, max-age=30

Supported Cipher Suites & Encryption

TLS_AES_256_GCM_SHA384
Preferred
TLS_AES_128_GCM_SHA256
Preferred
TLS_CHACHA20_POLY1305_SHA256
Preferred
ECDHE-ECDSA-AES256-GCM-SHA384
ECDHE-RSA-AES256-GCM-SHA384
ECDHE-ECDSA-AES128-GCM-SHA256