SSL Report:
vanity.stage1.sdg2.mastercard.com
(209.64.211.51)
Assessed on: Tue, 28 Oct 2025 15:10:50 UTC
| Clear cache
Summary
0
20
40
60
80
100
Certificate
Protocol Support
Key Exchange
Cipher Strength
Visit our documentation page
for more information, configuration guides, and books. Known issues are documented
here.
Server sent invalid/disabled HSTS policy. See below for further information. MORE INFO »
This server does not support TLS 1.3. MORE INFO »
This site works only in browsers with SNI support.
Certificate #1: RSA 2048 bits (SHA256withRSA)
|
Server Key and Certificate #1
|
|
| Subject |
stage.vanity.smartdata.mastercard.com
Fingerprint SHA256: 2be99f6f16c7c76d6930bc17ae99809c8927ba2c7f7ce695a4df28e57d0512a5 Pin SHA256: qyoOEIocP6EsNAwFOIuray1uPXd1mO+wHZYnJYimCFk= |
| Common names | stage.vanity.smartdata.mastercard.com |
| Alternative names | stage.vanity.smartdata.mastercard.com vanity.stage.sdng.mastercard.com vanity.stage1.sdg2.mastercard.com vanity.stage2.sdg2.mastercard.com stage.vanity.mastercard.com |
| Serial Number | 078eaacdf017f44188dec6ca62539c45 |
| Valid from | Tue, 11 Mar 2025 00:00:00 UTC |
| Valid until | Tue, 10 Mar 2026 23:59:59 UTC (expires in 4 months and 10 days) |
| Key | RSA 2048 bits (e 65537) |
| Weak key (Debian) | No |
| Issuer | DigiCert EV RSA CA G2
AIA: http://cacerts.digicert.com/DigiCertEVRSACAG2.crt |
| Signature algorithm | SHA256withRSA |
| Extended Validation | Yes |
| Certificate Transparency | Yes (certificate) |
| OCSP Must Staple | No |
| Revocation information |
CRL, OCSP CRL: http://crl3.digicert.com/DigiCertEVRSACAG2.crl OCSP: http://ocsp.digicert.com |
| Revocation status | Good (not revoked) |
| DNS CAA | No (more info) |
| Trusted | Yes
Mozilla Apple Android Java Windows |
|
|
Certificate #2: RSA 2048 bits (SHA256withRSA)
No SNI
|
|
Configuration
| Protocols | |
| TLS 1.3 | No |
| TLS 1.2 | Yes* |
| TLS 1.1 | No |
| TLS 1.0 | No |
| SSL 3 | No |
| SSL 2 | No |
| (*) Experimental: Server negotiated using No-SNI | |
| Cipher Suites | ||
|
# TLS 1.2 (suites in server-preferred order)
|
||
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (0xc030)
ECDH secp256r1 (eq. 3072 bits RSA) FS
|
256 | |
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xcca8)
ECDH secp256r1 (eq. 3072 bits RSA) FS
|
256 | |
| Handshake Simulation | |||
| Android 4.4.2 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Android 5.0.0 |
Server sent fatal alert: handshake_failure |
||
| Android 6.0 |
Server sent fatal alert: handshake_failure |
||
| Android 7.0 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Android 8.0 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Android 8.1 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Android 9.0 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| BingPreview Jan 2015 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Chrome 49 / XP SP3 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 ECDH secp256r1 FS |
| Chrome 69 / Win 7 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Chrome 70 / Win 10 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Chrome 80 / Win 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Firefox 31.3.0 ESR / Win 7 |
Server sent fatal alert: handshake_failure |
||
| Firefox 47 / Win 7 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 ECDH secp256r1 FS |
| Firefox 49 / XP SP3 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Firefox 62 / Win 7 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Firefox 73 / Win 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Googlebot Feb 2018 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| IE 11 / Win 7 R |
Server sent fatal alert: handshake_failure |
||
| IE 11 / Win 8.1 R |
Server sent fatal alert: handshake_failure |
||
| IE 11 / Win Phone 8.1 R |
Server sent fatal alert: handshake_failure |
||
| IE 11 / Win Phone 8.1 Update R |
Server sent fatal alert: handshake_failure |
||
| IE 11 / Win 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Edge 15 / Win 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Edge 16 / Win 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Edge 18 / Win 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Edge 13 / Win Phone 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Java 8u161 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Java 11.0.3 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Java 12.0.1 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| OpenSSL 1.0.1l R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| OpenSSL 1.0.2s R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| OpenSSL 1.1.0k R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| OpenSSL 1.1.1c R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Safari 6 / iOS 6.0.1 |
Server sent fatal alert: handshake_failure |
||
| Safari 7 / iOS 7.1 R |
Server sent fatal alert: handshake_failure |
||
| Safari 7 / OS X 10.9 R |
Server sent fatal alert: handshake_failure |
||
| Safari 8 / iOS 8.4 R |
Server sent fatal alert: handshake_failure |
||
| Safari 8 / OS X 10.10 R |
Server sent fatal alert: handshake_failure |
||
| Safari 9 / iOS 9 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Safari 9 / OS X 10.11 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Safari 10 / iOS 10 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Safari 10 / OS X 10.12 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Safari 12.1.2 / MacOS 10.14.6 Beta R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Safari 12.1.1 / iOS 12.3.1 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Apple ATS 9 / iOS 9 R | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| Yahoo Slurp Jan 2015 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
| YandexBot Jan 2015 | RSA 2048 (SHA256) | TLS 1.2 | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 ECDH secp256r1 FS |
|
# Not simulated clients (Protocol mismatch)
|
|||
| Android 2.3.7 No SNI 2 |
Protocol mismatch (not simulated) |
||
| Android 4.0.4 |
Protocol mismatch (not simulated) |
||
| Android 4.1.1 |
Protocol mismatch (not simulated) |
||
| Android 4.2.2 |
Protocol mismatch (not simulated) |
||
| Android 4.3 |
Protocol mismatch (not simulated) |
||
| Baidu Jan 2015 |
Protocol mismatch (not simulated) |
||
| IE 6 / XP No FS 1 No SNI 2 |
Protocol mismatch (not simulated) |
||
| IE 7 / Vista |
Protocol mismatch (not simulated) |
||
| IE 8 / XP No FS 1 No SNI 2 |
Protocol mismatch (not simulated) |
||
| IE 8-10 / Win 7 R |
Protocol mismatch (not simulated) |
||
| IE 10 / Win Phone 8.0 |
Protocol mismatch (not simulated) |
||
| Java 6u45 No SNI 2 |
Protocol mismatch (not simulated) |
||
| Java 7u25 |
Protocol mismatch (not simulated) |
||
| OpenSSL 0.9.8y |
Protocol mismatch (not simulated) |
||
| Safari 5.1.9 / OS X 10.6.8 |
Protocol mismatch (not simulated) |
||
| Safari 6.0.4 / OS X 10.8.4 R |
Protocol mismatch (not simulated) |
||
| (1) Clients that do not support Forward Secrecy (FS) are excluded when determining support for it. | |||
| (2) No support for virtual SSL hosting (SNI). Connects to the default site if the server uses SNI. | |||
| (3) Only first connection attempt simulated. Browsers sometimes retry with a lower protocol version. | |||
| (R) Denotes a reference browser or client, with which we expect better effective security. | |||
| (All) We use defaults, but some platforms do not use their best protocols and features (e.g., Java 6 & 7, older IE). | |||
| (All) Certificate trust is not checked in handshake simulation, we only perform TLS handshake. | |||
| Protocol Details | |
| Secure Renegotiation | Supported |
| Secure Client-Initiated Renegotiation | Yes |
| Insecure Client-Initiated Renegotiation | No |
| BEAST attack | Mitigated server-side (more info) |
| POODLE (SSLv3) | No, SSL 3 not supported (more info) |
| POODLE (TLS) | No (more info) |
| Zombie POODLE | No (more info) |
| GOLDENDOODLE | No (more info) |
| OpenSSL 0-Length | No (more info) |
| Sleeping POODLE | No (more info) |
| Downgrade attack prevention | Unknown (requires support for at least two protocols, excl. SSL2) |
| SSL/TLS compression | No |
| RC4 | No |
| Heartbeat (extension) | No |
| Heartbleed (vulnerability) | No (more info) |
| Ticketbleed (vulnerability) | No (more info) |
| OpenSSL CCS vuln. (CVE-2014-0224) | No (more info) |
| OpenSSL Padding Oracle vuln. (CVE-2016-2107) |
No (more info) |
| ROBOT (vulnerability) | No (more info) |
| Forward Secrecy | Yes (with most browsers) ROBUST (more info) |
| ALPN | No |
| NPN | No |
| Session resumption (caching) | Yes |
| Session resumption (tickets) | No |
| OCSP stapling | No |
| Strict Transport Security (HSTS) | Invalid
Server provided more than one HSTS header
max-age=16070400; includeSubDomains |
| HSTS Preloading | Not in: Chrome Edge Firefox IE |
| Public Key Pinning (HPKP) | No (more info) |
| Public Key Pinning Report-Only | No |
| Public Key Pinning (Static) | No (more info) |
| Long handshake intolerance | No |
| TLS extension intolerance | No |
| TLS version intolerance | No |
| Incorrect SNI alerts | No |
| Uses common DH primes | No, DHE suites not supported |
| DH public server param (Ys) reuse | No, DHE suites not supported |
| ECDH public server param reuse | Yes |
| Supported Named Groups | secp256r1, x25519, secp384r1 (server preferred order) |
| SSL 2 handshake compatibility | Yes |
|
|
|
1 https://vanity.stage1.sdg2.mastercard.com/
(HTTP/1.0 302 Moved Temporarily)
| 1 | |
| Location | https://vanity.stage1.sdg2.mastercard.com/sdportal/home.view | |
| Connection | close | |
| Content-Length | 0 | |
| Strict-Transport-Security | max-age=16070400; includeSubDomains | |
| Set-Cookie | TSeb648e39027=0886322c01ab2000eae1b00d04782921800421dda5228637d2f1e78a22493f75418f862dc7c6135808e91ccf0c113000a119e49f29aa4f57d9b6c3c8837db8ec6790dafaf441b8ff321af58988cdb1f9cd0334d20ee32a51d124e1797d40f987; Path=/ | |
| X-Frame-Options | SAMEORIGIN | |
| X-XSS-Protection | 1; mode=block | |
| X-Content-Type-Options | nosniff | |
| Content-Security-Policy-Report-Only | default-src 'self'; | |
| Referrer-Policy | no-referrer-when-downgrade | |
|
2 https://vanity.stage1.sdg2.mastercard.com/sdportal/home.view
(HTTP/1.1 302 Found)
| 2 | |
| Date | Tue, 28 Oct 2025 15:10:16 GMT | |
| Content-Length | 0 | |
| Connection | close | |
| Cache-Control | no-cache, no-store, max-age=0, private, no-transform | |
| Content-Language | en-US | |
| Location | https://vanity.stage1.sdg2.mastercard.com/static/public-portal-ui/login-signin-component?cobrandHost=mastercard&hostName=null+%28adb89de7-2f19-4f50-529a-4e30%29 | |
| Set-Cookie | SD_JSESSIONID=0000ajW6uMwVNItNNBfS7eO6UVD:1234; Path=/; Secure; HttpOnly | |
| Set-Cookie | PORTAL_ID=ZjFmYjFkMDAtOTAxZi00MWRhLWFkYmYtMmM4ZGI5OTg0NGY1; Path=/sdportal/; Secure; HttpOnly; SameSite=Lax | |
| Strict-Transport-Security | max-age=600 ; includeSubDomains | |
| X-Content-Type-Options | nosniff | |
| X-Frame-Options | SAMEORIGIN | |
| X-Vcap-Request-Id | feac003e-b66b-4477-6959-582e98f31241 | |
| X-Xss-Protection | 1; mode=block | |
| Strict-Transport-Security | max-age=16070400; includeSubDomains; preload | |
| X-MC-Correlation-Id | 5de4efcae8981621864d4c7a141122cc | |
| Strict-Transport-Security | max-age=16070400; includeSubDomains; preload | |
| Strict-Transport-Security | max-age=16070400; includeSubDomains | |
| X-MC-Correlation-Id | 5de4efcae8981621864d4c7a141122cc | |
| X-Frame-Options | SAMEORIGIN | |
| X-Content-Type-Options | nosniff | |
| X-Xss-Protection | 1; mode=block | |
| Set-Cookie | x-mc-web-ss=stl; Path=/; HttpOnly; Secure | |
| Set-Cookie | LB1=!SWEf+Y6ckg9wkDjW48iVTzghP0Ohs0H2l6RH7DuJ5Sw1ediVQ1VsayXy1ReFgS9A6gLzHG396cthwxA=; expires=Tue, 28-Oct-2025 15:40:16 GMT; path=/; Httponly; Secure | |
| Set-Cookie | TS0164e3d8=0160035456cba33208b7930e23f87f2c994f678b15be3025a720edf94bebd5ac616bd738ba01aa9cec43f9af7ee772a0ce0b5eb96bb20dce10f75a24e55581fcaa57d9f96328e8f84280c2c29246ac9d72b1cef2af4de98e6638f8e3dfda3fb16d8b351b58; Path=/; Secure; HttpOnly; | |
| Set-Cookie | TS01a61440=016003545632ba1b327a00fe317b65b85555d1f59bbe3025a720edf94bebd5ac616bd738ba7506a714989c4757814960c0e7dfddaebed470223e15ba405e0c2a7b2748f86f; path=/sdportal/; HttpOnly; Secure | |
| Set-Cookie | TS0164e3d8=016003545690fdcf90654624e822e50f1d75bb5a3df68d31a50f55eb9fadbe1dc8312f303c4b584eee7111ecf4905e50acc4a89e63e7a8e4d3fdef6b929e97567f15cbae63d54bdc4a56452305b2d459f6a7b143bc0949801d6cc768f887f7f488231a02d0a70be3fc7dbd7164bb31985eb35df806; Path=/; Secure; HttpOnly; | |
| Set-Cookie | TS01a61440=0160035456f35e265f0820fbf3eb501deaf852bc9bf68d31a50f55eb9fadbe1dc8312f303c8f468bd5478f5e5c3639385dff4bb29a181a0bb9d14d3fd4708cef5ef5782e14ed67e9e471171fb01233a78ccd736fdc; path=/sdportal/; HttpOnly; Secure | |
| Set-Cookie | TS01aca620=01fe8ee634f8b5fb1029cf5a2949e1add478c3ad1ccf81a4febb48b6592699dd888681aefe20c3dc8d2aac4f56f249da493cf9c4987402c8da0ef016fd6402f670c569b3d663bf0fc00601959e9fd677e2d97c52d41f91b90ede03efb1736cebb59c6f23fc2221a9edda05fefc777b535fd31b1df35582740274801c43b92fbc458ef5f908; Path=/; Secure; HttpOnly; | |
| Set-Cookie | TS016e51b8=01fe8ee6340013100142dee81d9e66f18d2d2f7f66cf81a4febb48b6592699dd888681aefe98f026632604701b63f456119c74555fd464f37c438f58ef8574bb25d060c33b2ab9c32158f73f0e6a90f76e284e8c1e26458a95676fec66ea8a2587556f64ff; path=/sdportal/; HttpOnly; Secure | |
| Set-Cookie | TSeb648e39027=0886322c01ab2000b4034683c60e5cb221afef83394bedc570e13003f11958ec2b1054e54c24ec7f08530bf749113000c58869f4476abe05787a3a421401fcd32dd1343540d6347621f2a9702b063ac99d73fe35bd1aeed3fd0b11f275dfef1d; Path=/ | |
| Content-Security-Policy-Report-Only | default-src 'self'; | |
| Referrer-Policy | no-referrer-when-downgrade | |
|
3 https://vanity.stage1.sdg2.mastercard.com/static/public-portal-ui/login-signin-component?cobrandHost=mastercard&hostName=null+%28adb89de7-2f19-4f50-529a-4e30%29
(HTTP/1.1 200 OK)
| 3 | |
| Date | Tue, 28 Oct 2025 15:10:16 GMT | |
| Content-Type | text/html; charset=utf-8 | |
| Content-Length | 592 | |
| Connection | close | |
| Vary | Accept-Encoding | |
| Accept-Ranges | bytes | |
| Cache-Control | max-age=14400 | |
| Cache-Control | private, no-transform | |
| Etag | "68f69308-250" | |
| Expires | Tue, 28 Oct 2025 19:10:16 GMT | |
| Last-Modified | Mon, 20 Oct 2025 19:52:40 GMT | |
| X-Vcap-Request-Id | 556f44ae-71e3-4382-6410-fb8976a38a94 | |
| Strict-Transport-Security | max-age=16070400; includeSubDomains | |
| X-MC-Correlation-Id | b12fc4b450b534ec97f946f2bf7dfc81 | |
| X-Frame-Options | SAMEORIGIN | |
| X-Content-Type-Options | nosniff | |
| X-Xss-Protection | 1; mode=block | |
| Set-Cookie | LB1=!JIQNxNkT1h4fB9LW48iVTzghP0Ohs09rDcwNAjX2orW5edlP6+rMwAK3P83qDYN8yeuhyHG+L20cUkQ=; expires=Tue, 28-Oct-2025 15:40:16 GMT; path=/; Httponly; Secure | |
| Set-Cookie | TS0164e3d8=01600354564f6c941e12347324dfa403fb599d40918f0be7f35fab787d72212c2ddf11cd6f3d7d6b70e4fca796a704ccf440e4ba6adcdb6d3095b18e3bcb97b872525e0b9f; Path=/; Secure; HttpOnly; | |
| Set-Cookie | TS0164e3d8=016003545606deb8ad5467fc864d8d691dfd84ea04a4eac9fd31e5afe30e765c06f94003020f25be0e518b1542b19cecb0738f4821f24a1352b01481ec53c273a1e3b1c16118c4ab456d9a9a96ae09031be6b67a3c; Path=/; Secure; HttpOnly; | |
| Set-Cookie | TS01aca620=01fe8ee634541667c2ffa2b31fe35717a807a256f8cf81a4febb48b6592699dd888681aefe20c3dc8d2aac4f56f249da493cf9c4987402c8da0ef016fd6402f670c569b3d663bf0fc00601959e9fd677e2d97c52d4e29d96188acb981d8fabffa9080c57a7a7f90957a9ce1e03782d60b57dce5acbc8833d826064bfcaf2b7de922602b95e; Path=/; Secure; HttpOnly; | |
| Set-Cookie | TSeb648e39027=0886322c01ab20008f8464313d23b3968f7e9267aec62aeeaf1f7a02fb07698d50862b9e2b281a9b08f1e812ec1130009e3b7c83f6bd9d3c787a3a421401fcd32dd1343540d6347621f2a9702b063ac99d73fe35bd1aeed3fd0b11f275dfef1d; Path=/ | |
| Content-Security-Policy-Report-Only | default-src 'self'; | |
| Referrer-Policy | no-referrer-when-downgrade | |
| Miscellaneous | |
| Test date | Tue, 28 Oct 2025 15:10:05 UTC |
| Test duration | 45.648 seconds |
| HTTP status code | 200 |
| HTTP server signature | - |
| Server hostname | stage1.sdg2.mastercard.com |
SSL Report v2.4.1
