Negotiated TLS version
The reported version belongs to the browser-to-Cloudflare connection. It describes a completed negotiation, rather than every TLS version this browser could support.
BrowserCheck · Browser environment diagnostics
Inspect the negotiated TLS version, cipher and HTTP protocol for this browser’s request to BrowserCheck at the Cloudflare edge.
This test makes a fresh request to BrowserCheck and reads connection metadata provided by Cloudflare. It shows what was negotiated for that request, with missing fields reported separately. No IP address, cookies or raw ClientHello are included in the result.
Reading connection metadata…
Copied and printed output omits IP addresses, the full User Agent, exact versions, fingerprint hashes, and precise location.
The reported version belongs to the browser-to-Cloudflare connection. It describes a completed negotiation, rather than every TLS version this browser could support.
The cipher is the suite selected for this connection. This endpoint does not capture the browser’s full offered cipher list, extension order or signature algorithms.
HTTP/1.1, HTTP/2 or HTTP/3 is reported when the edge exposes it. Protocol selection can vary by connection, browser, network and service configuration.
The TLS connection terminates at Cloudflare. The reported fields describe that edge connection; an origin server’s separate TLS connection is outside this measurement.
This first version reports basic TLS and HTTP connection metadata. JA4 needs additional handshake instrumentation or an eligible Cloudflare Bot Management service.
A local HTTP request does not establish TLS. Development metadata can be simulated, so the tool does not treat it as a browser handshake measurement.
No. It records a connection’s selected parameters and their measurement scope. It cannot establish VPN routing, certificate validation behavior or overall security.