Certificate data if state is "secure". Will only contain one entry unless certificateChain is passed as an option.
OptionalcertificateCertificate transparency compliance per RFC 6962. See https://www.certificate-transparency.org/what-is-ct for more information.
OptionalcipherThe cipher suite used in this request if state is "secure".
OptionalerrorError message if state is "broken"
OptionalhpkpTrue if host uses Public Key Pinning and state is "secure".
OptionalhstsTrue if host uses Strict Transport Security and state is "secure".
OptionalisThe domain name does not match the certificate domain.
OptionalisOptionalisThe certificate is either expired or is not yet valid. See CertificateInfo.validity for start and end dates.
OptionalisOptionalkeaThe key exchange algorithm used in this request if state is "secure".
OptionaloverridableThe type of certificate error that was overridden for this connection, if any.
OptionalprotocolProtocol version if state is "secure"
OptionalsecretThe length (in bits) of the secret key.
OptionalsignatureThe signature scheme used in this request if state is "secure".
OptionalusedTrue if the TLS connection used Delegated Credentials.
OptionalusedTrue if the TLS connection used Encrypted Client Hello.
OptionalusedTrue if the TLS connection made OCSP requests.
OptionalusedTrue if the TLS connection used a privacy-preserving DNS transport like DNS-over-HTTPS.
Optionalweaknesslist of reasons that cause the request to be considered weak, if state is "weak"
Contains the security properties of the request (ie. SSL/TLS information).