{"_id": "68661defe4f6d1cf", "_type": "sec_certs.sample.eucc.EUCCCertificate", "dgst": "68661defe4f6d1cf", "cert_id": "EUCC-3090-2026-0035", "category": "SMARTCARDS AND SIMILAR DEVICES", "name": "NPCT7xx TPM2.0 rev 1.59", "status": "active", "manufacturer": "Nuvoton Technology Corporation", "scheme": "FR", "security_level": {"_type": "Set", "elements": ["EAL4"]}, "not_valid_before": "2026-04-26", "not_valid_after": "2031-04-26", "report_link": "https://certification.enisa.europa.eu/document/download/d8afbb17-0153-4eb7-a044-9c56c2eedd77_en?filename=EUCC-3090-2026-35-rapport.pdf", "st_link": "https://certification.enisa.europa.eu/document/download/9596fa8c-19a6-4f1b-89b0-c5663412654d_en?filename=EUCC-3090-2026-35-cible.pdf", "cert_link": "https://certification.enisa.europa.eu/document/download/084d1e4a-05f6-487b-b622-042e53ac5003_en?filename=EUCC-3090-2026-35-certificat.pdf", "manufacturer_web": "https://www.nuvoton.com/products/cloud-computing/security/trusted-platform-modu", "protection_profile_links": null, "state": {"_type": "sec_certs.sample.cc_eucc_common.InternalState", "report": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "b5c260ff21c1063a22635d1222a395d0f7222b83cf006d21c833a4c662e2a11f", "txt_hash": "9e3f235f7f768966d41aec8ba7693e37a4af3b210fe18045743b7e4b416ee009", "json_hash": null}, "st": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "e826fc75472f4db3d96bd2359a232f0d9455f8cd575434dfd840064df0ddda4f", "txt_hash": "3da685510a3ba2892160e100d8f3af10f2689474807a7767bf2ab70178162203", "json_hash": null}, "cert": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "b75752f9fe0808e198794043d7340384efcb7d1c1b2791801c248ae4b350ee4c", "txt_hash": "105ae027b6edd2b939700880304af227afed37743d4e3cd1882a3e5671b1a7ad", "json_hash": null}}, "pdf_data": {"_type": "sec_certs.sample.cc_eucc_common.PdfData", "report_metadata": {"pdf_file_size_bytes": 819664, "pdf_is_encrypted": false, "pdf_number_of_pages": 16, "/Creator": "Acrobat PDFMaker 26 pour Word", "/Producer": "Docusign DMv10", "/CreationDate": "D:20260424130750+02'00'", "/ModDate": "D:20260427081229+00'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://cyber.gouv.fr/cybersecurity-act", "https://www.cyber.gouv.fr/", "http://www.cofrac.fr/", "http://www.commoncriteriaportal.org/", "https://www.nuvoton.com/products/cloud-computing/security/trusted-platform-module-tpm/", "mailto:certification@ssi.gouv.fr", "https://www.ssi.gouv.fr/", "https://www.nuvoton.com/support/security/report-security-vulnerability/", "mailto:security@nuvoton.com"]}}, "st_metadata": {"pdf_file_size_bytes": 579760, "pdf_is_encrypted": false, "pdf_number_of_pages": 70, "/Author": "alewis", "/CreationDate": "D:20260305153438Z", "/Creator": "FrameMaker 17.0.5", "/ModDate": "D:20260310130423+02'00'", "/Producer": "Acrobat Elements 15.0 (Windows)", "/Title": "securityTarget.book", "pdf_hyperlinks": {"_type": "Set", "elements": ["http://www.rsa.com", "https://www.trustedcomputinggroup.org/home", "http://www.ietf.org/rfc/rfc2104.txt"]}}, "cert_metadata": {"pdf_file_size_bytes": 343016, "pdf_is_encrypted": false, "pdf_number_of_pages": 2, "/Creator": "Acrobat PDFMaker 26 pour Word", "/Producer": "Docusign DMv10", "/CreationDate": "D:20260424130930+02'00'", "/ModDate": "D:20260427081229+00'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://cyber.gouv.fr/", "https://cyber.gouv.fr/cybersecurity-act", "https://www.nuvoton.com/products/cloud-computing/security/trusted-platform-module-tpm/", "https://www.nuvoton.com/support/security/report-security-vulnerability/", "mailto:security@nuvoton.com"]}}, "report_frontpage": {"FR": {}}, "st_frontpage": null, "cert_frontpage": null, "report_keywords": {"cc_cert_id": {"FR": {"ANSSI-CC-PP-2021/02": 2, "EUCC-3090-2026-35": 4}}, "cc_protection_profile_id": {"ANSSI": {"ANSSI-CC-PP-2021/02": 2}}, "cc_security_level": {"EAL": {"EAL4": 1, "EAL2": 4}}, "cc_sar": {"ALC": {"ALC_FLR.1": 3, "ALC_DVS.2": 1, "ALC_FLR": 2}, "AVA": {"AVA_VAN.4": 1, "AVA_VAN": 2}}, "cc_sfr": {}, "cc_claims": {"O": {"O.C": 2}, "R": {"R.O": 2}}, "vendor": {}, "eval_facility": {"Serma": {"SERMA": 1}, "CESTI": {"CESTI": 2}}, "symmetric_crypto": {"DES": {"DES": {"DES": 1}}}, "asymmetric_crypto": {}, "pq_crypto": {}, "hash_function": {}, "crypto_scheme": {}, "crypto_protocol": {}, "randomness": {}, "cipher_mode": {}, "ecc_curve": {}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"FI": {"Malfunction": 1}}, "technical_report_id": {}, "device_model": {}, "tee_name": {}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"ISO": {"ISO/IEC 18045:2008": 1}, "CC": {"CCMB-2017-04-001": 1, "CCMB-2017-04-004": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "st_keywords": {"cc_cert_id": {"FR": {"ANSSI-CC-PP-2021/02": 1}}, "cc_protection_profile_id": {"ANSSI": {"ANSSI-CC-PP-2021/02": 1}}, "cc_security_level": {"EAL": {"EAL 4": 1, "EAL4": 2, "EAL 4 augmented": 1, "EAL4 augmented": 1}}, "cc_sar": {"AGD": {"AGD_SPDM": 4}, "ALC": {"ALC_FLR.1": 3, "ALC_DVS.2": 4, "ALC_DVS.1": 1}, "AVA": {"AVA_VAN.4": 3}}, "cc_sfr": {"FCO": {"FCO_NRO": 6, "FCO_NRO.1": 6}, "FCS": {"FCS_RNG.1": 4, "FCS_RNG.1.1": 1, "FCS_RNG.1.2": 1, "FCS_CKM": 25, "FCS_CKM.2": 6, "FCS_COP.1": 14, "FCS_CKM.4": 24, "FCS_CKM.1": 15, "FCS_CKM.4.1": 1, "FCS_COP": 32}, "FDP": {"FDP_ACC.1": 35, "FDP_IFC.1": 20, "FDP_RIP.1": 3, "FDP_RIP.1.1": 1, "FDP_ITC.1": 12, "FDP_ITC.2": 14, "FDP_ITT.1": 3, "FDP_ITT.1.1": 1, "FDP_ACC": 21, "FDP_ACF.1": 35, "FDP_ACC.2": 2, "FDP_ACF": 23, "FDP_UIT": 9, "FDP_UIT.1": 4, "FDP_SDI.1": 3, "FDP_SDI.1.1": 1, "FDP_ETC": 6, "FDP_ETC.2": 4, "FDP_ITC": 6, "FDP_UCT": 7, "FDP_UCT.1": 2, "FDP_ETC.1": 2}, "FIA": {"FIA_UID.1": 7, "FIA_SOS.2": 3, "FIA_SOS.2.1": 1, "FIA_SOS.2.2": 1, "FIA_AFL": 12, "FIA_UAU.1": 7, "FIA_AFL.1": 8, "FIA_UID.1.1": 1, "FIA_UID.1.2": 1, "FIA_UAU.1.1": 1, "FIA_UAU.1.2": 1, "FIA_UAU.5": 3, "FIA_UAU.5.1": 1, "FIA_UAU.5.2": 1, "FIA_UAU.6": 3, "FIA_UAU.6.1": 1, "FIA_USB.1": 3, "FIA_ATD.1": 1, "FIA_USB.1.1": 1, "FIA_USB.1.2": 1, "FIA_USB.1.3": 1, "FIA_SOS.1": 1}, "FMT": {"FMT_SMR.1": 21, "FMT_SMF.1": 13, "FMT_MSA.2": 4, "FMT_MSA.1": 15, "FMT_MSA.2.1": 1, "FMT_MSA": 51, "FMT_MSA.4": 3, "FMT_MTD": 6, "FMT_MTD.1": 2, "FMT_MSA.3": 22, "FMT_MOF": 3, "FMT_MOF.1": 1}, "FPT": {"FPT_STM.1": 2, "FPT_STM.1.1": 1, "FPT_TST.1": 5, "FPT_TST.1.1": 1, "FPT_TST.1.2": 1, "FPT_TST.1.3": 1, "FPT_FLS": 9, "FPT_FLS.1": 2, "FPT_PHP.3": 3, "FPT_PHP.3.1": 1, "FPT_ITT.1": 3, "FPT_ITT.1.1": 1, "FPT_TDC.1": 1}, "FTP": {"FTP_ITC.1": 5, "FTP_TRP.1": 8, "FTP_ITC": 3, "FTP_ITC.1.1": 1, "FTP_ITC.1.2": 1, "FTP_ITC.1.3": 1, "FTP_TRP": 5}}, "cc_claims": {"O": {"O.C": 9, "O.DAC": 6}, "R": {"R.O": 9}, "OE": {"OE.SC": 11}}, "vendor": {"Microsoft": {"Microsoft": 1}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 14, "AES-128": 1, "AES-256": 2}}, "constructions": {"MAC": {"HMAC": 33}}}, "asymmetric_crypto": {"RSA": {"RSA 2048": 2}, "ECC": {"ECDH": {"ECDH": 3}, "ECDSA": {"ECDSA": 7}, "ECC": {"ECC": 25}}, "FF": {"DH": {"DHE": 3, "Diffie-Hellman": 1}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 9}, "SHA2": {"SHA-384": 10, "SHA-256": 9}}}, "crypto_scheme": {"KEX": {"Key Exchange": 1}}, "crypto_protocol": {}, "randomness": {"PRNG": {"DRBG": 5}, "RNG": {"RNG": 17, "RBG": 1}}, "cipher_mode": {"CTR": {"CTR": 2}, "CFB": {"CFB": 2}, "OFB": {"OFB": 2}}, "ecc_curve": {"NIST": {"P-384": 6, "P-256": 2, "NIST P-384": 4, "secp384r1": 1}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"physical probing": 1}, "FI": {"Physical Tampering": 3, "physical tampering": 1, "malfunction": 2, "Malfunction": 2}, "other": {"JIL": 1}}, "technical_report_id": {}, "device_model": {}, "tee_name": {}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS140-2": 2, "FIPS 186-5": 5, "FIPS 140-2": 3, "FIPS 180-4": 1, "FIPS 198-1": 2, "FIPS186-5": 2, "FIPS 140-3": 1, "FIPS180-4": 1, "FIPS PUB 186-5": 1, "FIPS198-1": 1, "FIPS 197": 2, "FIPS 180-1": 1}, "PKCS": {"PKCS#1": 1, "PKCS #1": 1}, "BSI": {"AIS31": 1}, "RFC": {"RFC 5869": 1, "RFC 5116": 2, "RFC 3447": 1}, "ISO": {"ISO/IEC 15408": 2, "ISO/IEC 14888-3": 1, "ISO/IEC 9797-2": 1, "ISO/IEC 18033-3": 1, "ISO/IEC 15946-1": 1, "ISO/IEC 10116:2006": 1}, "CC": {"CCMB-2017-04-001": 1, "CCMB-2017-04-002": 1, "CCMB-2017-04-003": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "cert_keywords": {"cc_cert_id": {"FR": {"ANSSI-CC-PP-2021/02": 1, "EUCC-3090-2026-35": 2}}, "cc_protection_profile_id": {"ANSSI": {"ANSSI-CC-PP-2021/02": 1}}, "cc_security_level": {"EAL": {"EAL4": 1, "EAL2": 1}}, "cc_sar": {"ALC": {"ALC_FLR.1": 2, "ALC_DVS.2": 1}, "AVA": {"AVA_VAN.4": 1}}, "cc_sfr": {}, "cc_claims": {"O": {"O.C": 1}, "R": {"R.O": 1}}, "vendor": {}, "eval_facility": {"Serma": {"SERMA": 2}}, "symmetric_crypto": {}, "asymmetric_crypto": {}, "pq_crypto": {}, "hash_function": {}, "crypto_scheme": {}, "crypto_protocol": {}, "randomness": {}, "cipher_mode": {}, "ecc_curve": {}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "technical_report_id": {}, "device_model": {}, "tee_name": {}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"ISO": {"ISO/IEC 15408:2009": 2, "ISO/IEC 18045:2008": 2}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "report_filename": "d8afbb17-0153-4eb7-a044-9c56c2eedd77_en", "st_filename": "9596fa8c-19a6-4f1b-89b0-c5663412654d_en", "cert_filename": "084d1e4a-05f6-487b-b622-042e53ac5003_en"}, "heuristics": {"_type": "sec_certs.sample.cc_eucc_common.Heuristics", "extracted_versions": {"_type": "Set", "elements": ["1.59", "2.0"]}, "cpe_matches": {"_type": "Set", "elements": ["cpe:2.3:h:nuvoton:npct7xx:-:*:*:*:*:*:*:*"]}, "verified_cpe_matches": null, "related_cves": null, "cert_lab": null, "cert_id": "EUCC-3090-2026-35", "prev_certificates": null, "next_certificates": null, "st_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "report_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "annotated_references": null, "extracted_sars": {"_type": "Set", "elements": [{"_type": "sec_certs.sample.sar.SAR", "family": "ALC_FLR", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "AVA_VAN", "level": 4}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_DVS", "level": 2}]}, "direct_transitive_cves": null, "indirect_transitive_cves": null, "scheme_data": null, "protection_profiles": null, "eal": "EAL4"}, "other_metadata": {"_type": "sec_certs.sample.eucc.EUCCCertificate.EnisaMetadata", "certificate_id": "EUCC-3090-2026-0035", "product_name": "NPCT7xx TPM2.0 rev 1.59", "product_type": "Smartcards and similar devices", "product_version": "configuration version 1.5.5.5", "product_description": "This product is a TPM (Trusted Platform Module). It is designed to guarantee the hardware and software integrity of trusted platforms (servers, computers, etc.) in accordance with TPM2.0 functional specifications.", "holder_name": "Nuvoton Technology Corporation", "holder_address": "No. 4, Creation Rd. III, Hsinchu Science Park Taiwan, R.O.C.", "holder_contact": "security@nuvoton.com", "holder_website": "https://www.nuvoton.com/products/cloud-computing/security/trusted-platform-modu\u2026", "certification_body": "ANSSI", "nando_id": "3090", "certification_body_address": "Tour Mercure 31 Quai de Grenelle, 75015 Paris", "certification_body_contact": "certification@ssi.gouv.fr Phone: +33 (0)1 71 75 82 82", "itsef": "Serma Safety and Security SAS", "responsible_ncca": "Agence nationale de la s\u00e9curit\u00e9 des syst\u00e8mes d\u2019information", "scheme": "(UE) 2024/482 - EUCC", "report_reference": "EUCC-3090-2026-35 Certification Report", "assurance_level": "High", "cc_version": "CC 3.1 Revision 5", "cem_version": "CEM 3.1 Revision 5", "ava_van_level": "4", "package": {"EAL4": ["ALC_FLR.1", "ALC_DVS.2", "AVA_VAN.4"]}, "protection_profile": "[PP-TPM] : ANSSI-CC-PP-2021/02", "issuance_year": "2026", "issuance_month": "4", "issuance_date_full": "26/04/2026", "certificate_yearly_number": "EUCC-3090-2026-000035-I-00", "modification_or_reassurance": null, "validity_period_years": "5 years"}}