PQ CRYPTA PLATFORM

🏠 Main

📰 News

👤 Account

⟨ QUANTUM ERROR PORTAL ⟩

Navigate the Error Dimensions

PQ Crypta Logo

JA4 t13d0911h1_f91f431d341e_fe5d0254026e

Unclassified — observed in live traffic

Unclassified

t13d0911h1_f91f431d341e_fe5d0254026e

Completed a TLS handshake but never an HTTP request, so no User-Agent was ever presented.

What this fingerprint encodes

JA4_a t13d0911h1 handshake shape, human-readable
JA4_b f91f431d341e truncated hash of the cipher list
JA4_c fe5d0254026e truncated hash of extensions + signature algorithms
Transport
TCP
TLS version
TLS 1.3
Server name
server name sent
Cipher suites offered
9
Extensions offered
11
ALPN
h1

The hello it was computed from

Recovered because the proxy now stores the pre-hash JA3 string alongside the digest. Every number below came out of this client's ClientHello; anything we cannot name in the IANA registry is shown as its raw value rather than guessed at.

Version
TLS 1.2

Cipher suites 9

Extensions 11

Named groups 4

Point formats 1

Raw JA3 string
771,4866-4865-4867-49196-49195-52393-49200-49199-52392,5-0-16-10-51-11-43-13-23-45-65037,4588-29-23-24,0

Seen in live traffic

Connections
15
First seen
2026-10-06 19:58 UTC
Last seen
2026-10-06 21:28 UTC
Transport
TCP
JA3 hashes absorbed
15

The same client, 15 different JA3s

This one JA4 covers 15 distinct JA3 hashes. A JA3 hashes the cipher and extension lists in the order they arrived, so a client that shuffles them — which Chrome and its derivatives do on purpose — produces a new JA3 almost every connection and fragments into what looks like 15 unrelated clients. JA4 sorts those lists before hashing, which is why all of it lands here instead.

This entry is an observation, not a policy decision. It is here because the edge saw it, not because anyone reviewed it, and it blocks nothing on its own. Only the curated tier drives classification and banning.