tls-reputation.comTLS fingerprint reputation

known client

Google Chrome / Chromium

Chromium cipher-suite signature — Chrome, Edge, Brave, Opera; any extension permutation or version

Browser build, no PQ key share

Google Chrome / Chromium: a browser-shaped hello, but without the post-quantum key share a current Chrome or Firefox would send.

TLS 1.3ALPN h2 · http/1.12026-07-19 → 2026-07-23
JA4
JA4_r
JA3
JA3_raw

this JA3 also appears under:

One JA3 mapping to several JA4s means the same cipher/extension set arrived under different TLS versions or ALPNs — the JA4 is the finer identity.

explore in graph →

Read

catalog identity
Matches Google Chrome / Chromium in the ground-truth catalogue.
self-randomisation
fixed — one JA3 across 826 connections: a deterministic stack. Libraries and command-line clients look like this.
real-browser tell
Browser-shaped cipher list but no post-quantum key share — the tell that separates curl-impersonate / uTLS from a real Chrome.
reach
0.338 roams across 5 domains — spread is how evenly, not how many.

Spread measures reach, not intent: it can’t tell one scraper visiting 500 domains from 500 people visiting one each. Stability is a claim about software — whether the stack is deterministic — nothing about who runs it.

Footprint

826
observations
5
domains reached
2026-07-19
first seen
2026-07-23
last seen

ClientHello anatomy

The underscore groups of JA4_r are the raw cipher suites · extensions · signature algorithms behind the hash.

TLS version
TLS 1.3
ALPN (wire order)
h2, http/1.1
EC point formats
0x0000
Post-quantum key share
absent

The post-quantum key share is a structural fact about the hello, not a verdict — GREASE values are flagged the same neutral way.

cipher suites(15)
  1. 00x1302TLS_AES_256_GCM_SHA384
  2. 10x1301TLS_AES_128_GCM_SHA256
  3. 20x1303TLS_CHACHA20_POLY1305_SHA256
  4. 30xc02cTLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
  5. 40xc02bTLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256
  6. 50xcca9TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305
  7. 60xc030TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
  8. 70xcca8TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305
  9. 80xc02fTLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
  10. 90xc014TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
  11. 100xc013TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
  12. 110x009dTLS_RSA_WITH_AES_256_GCM_SHA384
  13. 120x009cTLS_RSA_WITH_AES_128_GCM_SHA256
  14. 130x0035TLS_RSA_WITH_AES_256_CBC_SHA
  15. 140x002fTLS_RSA_WITH_AES_128_CBC_SHA
extensions(14)sorted
  1. 00x0000server_name (SNI)
  2. 10x0005status_request (OCSP)
  3. 20x000asupported_groups
  4. 30x000bec_point_formats
  5. 40x000dsignature_algorithms
  6. 50x0010application_layer_protocol_negotiation (ALPN)
  7. 60x0011unknown (0x0011)
  8. 70x0017extended_master_secret
  9. 80x0023session_ticket
  10. 90x002bsupported_versions
  11. 100x002dpsk_key_exchange_modes
  12. 110x0032unknown (0x0032)
  13. 120x0033key_share
  14. 130xff01renegotiation_info

Stored sorted — under one JA4 the wire order varies by construction, so no single order is “the” order.

curves / groups(10)
  1. 00x001dx25519
  2. 10x0017secp256r1 (P-256)
  3. 20x0018secp384r1 (P-384)
  4. 30x0019secp521r1 (P-521)
  5. 40x001ex448
  6. 50x0100ffdhe2048
  7. 60x0101ffdhe3072
  8. 70x0102ffdhe4096
  9. 80x0103ffdhe6144
  10. 90x0104ffdhe8192
signature algorithms(21)
  1. 00x0403ecdsa_secp256r1_sha256
  2. 10x0503ecdsa_secp384r1_sha384
  3. 20x0603ecdsa_secp521r1_sha512
  4. 30x0807ed25519
  5. 40x0808ed448
  6. 50x0804rsa_pss_rsae_sha256
  7. 60x0805rsa_pss_rsae_sha384
  8. 70x0806rsa_pss_rsae_sha512
  9. 80x0809rsa_pss_pss_sha256
  10. 90x080arsa_pss_pss_sha384
  11. 100x080brsa_pss_pss_sha512
  12. 110x0401rsa_pkcs1_sha256
  13. 120x0501rsa_pkcs1_sha384
  14. 130x0601rsa_pkcs1_sha512
  15. 140x0402rsa_pkcs1_sha384
  16. 150x0303rsa_pkcs1_sha512 (legacy)
  17. 160x0301rsa_pkcs1_sha256 (legacy)
  18. 170x0302rsa_pkcs1_sha384 (legacy)
  19. 180x0203ecdsa_sha1
  20. 190x0201rsa_pkcs1_sha1
  21. 200x0202unknown (0x0202)

Reach — domains contacted

Top 5 of 5. Share is the fraction of this fingerprint’s observations reaching each name.