Guest session
Check Detail

gmail.com · SSL

Passed Grade A
100.0%
Hostname gmail.com
Check name SSL
last run 08/04/2026 11:46
Result
Incomplete Grade B 75.6%

Result Detail

SSL
Check name Status Value
certificate chain is complete ✅ Passed 4
root CA is trusted ✅ Passed Trusted
cert valid for ✅ Passed 61
chain certs are valid until ✅ Passed 08.06.2026
CN matches Domainname ✅ Passed gmail.com
certificate subject ✅ Passed CN=gmail.com
certificate issuer ✅ Passed C=US, O=Google Trust Services, CN=WE2
signature algorithm ✅ Passed ecdsa-with-SHA256
TLS protocol ✅ Passed TLSv1.3 TLS_AES_256_GCM_SHA384
Subject Alternative Names ✅ Passed gmail.com, *.gmail.com
Public Key ✅ Passed EC 256
Certificate chain
# Common name Issuer Valid until CA
0 gmail.com C=US, O=Google Trust Services, CN=WE2 08.06.2026 10:38:56 No
1 gmail.com C=US, O=Google Trust Services, CN=WE2 08.06.2026 10:38:56 No
2 WE2 C=US, O=Google Trust Services LLC, CN=GTS Root R4 20.02.2029 15:00:00 Yes
3 GTS Root R4 C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA 28.01.2028 01:00:42 Yes
TLS details
Negotiated protocol TLSv1.3
Cipher suite TLS_AES_256_GCM_SHA384 (256 bit)
Cipher version TLSv1.3
Perfect Forward Secrecy Attention
Earliest chain expiry 08.06.2026 10:38
Fingerprints
SHA-256 58:73:11:76:B6:D5:DF:D2:4E:04:4B:D4:9F:11:F2:B4:3B:08:49:DC:AE:8B:B3:B1:49:89:45:BC:7A:F2:69:2B
SHA-1 F4:2D:AB:26:C2:DE:67:87:99:2B:2C:CF:08:13:66:08:21:C3:8C:0B
Revocation
OCSP URLs
http://o.pki.goog/we2
CRL URLs
Full Name: URI:http://c.pki.goog/we2/yK5nPhtHKQs.crl
Issuer URLs (AIA)
http://i.pki.goog/we2.crt
OCSP Must-Staple No
Trust evaluation

Attempted: Yes

Trusted: Yes

OpenSSL diagnostic command
openssl s_client -connect gmail.com:443 -servername gmail.com