Certificate key is weak
Check id: tls.weak_key · fix effort: medium
What it means
Your certificate's cryptographic key is below current strength standards. It's likely a very old certificate.
The technical detail
RSA under 2048 bits or EC under 256. Public CAs stopped issuing these years ago.
How to fix it
- Reissue with RSA 2048+ or ECDSA P-256.
Does your domain have this problem?
Run a free scan, takes about ten seconds.