{
"_type": "sec_certs.sample.eucc.EUCCCertificate",
"category": "SMARTCARDS AND SIMILAR DEVICES",
"cert_id": "EUCC-3090-2026-0022",
"cert_link": "https://certification.enisa.europa.eu/document/download/6c0f1082-2389-4277-a922-2f060166d56c_en?filename=EUCC-3090-2026-22-certificat.pdf",
"dgst": "c1516445cb5493d9",
"heuristics": {
"_type": "sec_certs.sample.cc_eucc_common.Heuristics",
"annotated_references": null,
"cert_id": "EUCC-3090-2026-22",
"cert_lab": null,
"cpe_matches": null,
"direct_transitive_cves": null,
"eal": "EAL5",
"extracted_sars": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_INT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_CCL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_OPE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_TDS",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_DPT",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_IMP",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_ARC",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_FSP",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DVS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DEL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_LCD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AVA_VAN",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_COV",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMS",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_TSS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_FLR",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_IND",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_OBJ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMC",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_SPD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_REQ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_FUN",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_INT",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_ECD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_PRE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_TAT",
"level": 3
}
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"-"
]
},
"indirect_transitive_cves": null,
"next_certificates": null,
"prev_certificates": null,
"protection_profiles": null,
"related_cves": null,
"report_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"scheme_data": null,
"st_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"verified_cpe_matches": null
},
"manufacturer": "STMICROELECTRONICS",
"manufacturer_web": "https://www.st.com/en/secure-mcus/st33j2m0.html",
"name": "ST33J2M0",
"not_valid_after": "2031-04-27",
"not_valid_before": "2026-04-27",
"other_metadata": {
"_type": "sec_certs.sample.eucc.EUCCCertificate.EnisaMetadata",
"assurance_level": "High",
"ava_van_level": "5",
"cc_version": "CC:2022 Revision 1",
"cem_version": "CEM:2022 Revision 1",
"certificate_id": "EUCC-3090-2026-0022",
"certificate_yearly_number": "EUCC-3090-2026-000022-I-00",
"certification_body": "ANSSI",
"certification_body_address": "Tour Mercure 31 Quai de Grenelle, 75015 Paris",
"certification_body_contact": "[email protected] Phone: +33 (0)1 71 75 82 82",
"holder_address": "190 Avenue Celestin Coq, 13106 Rousset",
"holder_contact": "[email protected]",
"holder_name": "STMICROELECTRONICS",
"holder_website": "https://www.st.com/en/secure-mcus/st33j2m0.html",
"issuance_date_full": "27/04/2026",
"issuance_month": "4",
"issuance_year": "2026",
"itsef": "Serma Safety and Security SAS",
"modification_or_reassurance": null,
"nando_id": "3090",
"package": {
"EAL5": [
"ADV_IMP.2",
"ADV_INT.3",
"ADV_TDS.5",
"ALC_CMC.5",
"ALC_DVS.2",
"ALC_FLR.2",
"ALC_TAT.3",
"ASE_TSS.2",
"ATE_COV.3",
"ATE_FUN.2",
"AVA_VAN.5"
]
},
"product_description": "The product evaluated is \"ST33J2M0, C05\" developed by STMICROELECTRONICS. The microcontroller, by itself, is not a standalone product that can be used in its current state. It is designed to host one or more applications and may be embedded in a plastic support to form a smart card. This card has multiple uses (secure identity documents, banking applications, subscription television, transport, health, etc.) depending on the application software embedded in it. These software examples are not included in the scope of this evaluation.",
"product_name": "ST33J2M0",
"product_type": "Smartcards and similar devices",
"product_version": "C05",
"protection_profile": "Security IC Platform Protection Profile with Augmentation Packages Version 1.0, 13 January 2014, BSI-CC-PP-0084-2014",
"report_reference": "EUCC-3090-2026-22 Certification Report",
"responsible_ncca": "Agence nationale de la s\u00e9curit\u00e9 des syst\u00e8mes d\u2019information",
"scheme": "(UE) 2024/482 - EUCC",
"validity_period_years": "5 years"
},
"pdf_data": {
"_type": "sec_certs.sample.cc_eucc_common.PdfData",
"cert_filename": "6c0f1082-2389-4277-a922-2f060166d56c_en",
"cert_frontpage": null,
"cert_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"FR": {
"EUCC-3090-2026-22": 2
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0084-2014": 1
}
},
"cc_sar": {
"ADV": {
"ADV_IMP.2": 1,
"ADV_INT.3": 1,
"ADV_TDS.5": 1
},
"ALC": {
"ALC_CMC.5": 1,
"ALC_DVS.2": 1,
"ALC_FLR.2": 2,
"ALC_TAT.3": 1
},
"ASE": {
"ASE_TSS.2": 1
},
"ATE": {
"ATE_COV.3": 1,
"ATE_FUN.2": 1
},
"AVA": {
"AVA_VAN.5": 1
}
},
"cc_security_level": {
"EAL": {
"EAL2": 1,
"EAL5": 1
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"Serma": {
"SERMA": 2
}
},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"ISO": {
"ISO/IEC 15408:2022": 2,
"ISO/IEC 18045:2022": 2
}
},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"cert_metadata": {
"/CreationDate": "D:20260417170511+02\u002700\u0027",
"/Creator": "Acrobat PDFMaker 26 pour Word",
"/ModDate": "D:20260427114329+00\u002700\u0027",
"/Producer": "Docusign DMv10",
"pdf_file_size_bytes": 345450,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://cyber.gouv.fr/",
"mailto:[email protected]",
"https://cyber.gouv.fr/cybersecurity-act",
"https://www.st.com/en/secure-mcus/st33j2m0.html",
"https://www.st.com/content/st_com/en/about/security-and-privacy/psirt.html"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 2
},
"report_filename": "5a44fdcb-6174-4c74-9d92-ee6dfa60a18e_en",
"report_frontpage": {
"FR": {}
},
"report_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"FR": {
"EUCC-3090-2026-22": 4
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0084-2014": 1,
"BSI-PP- 0084-2014": 1
}
},
"cc_sar": {
"ADV": {
"ADV_IMP.2": 1,
"ADV_INT.3": 1,
"ADV_TDS.5": 1
},
"ALC": {
"ALC_CMC.5": 1,
"ALC_DVS.2": 1,
"ALC_FLR": 2,
"ALC_FLR.2": 3,
"ALC_TAT.3": 1
},
"ASE": {
"ASE_TSS.2": 1
},
"ATE": {
"ATE_COV.3": 1,
"ATE_FUN.2": 1
},
"AVA": {
"AVA_VAN": 2,
"AVA_VAN.5": 1
}
},
"cc_security_level": {
"EAL": {
"EAL2": 4,
"EAL5": 1
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"CESTI": {
"CESTI": 2
},
"Serma": {
"SERMA": 1
}
},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {
"FI": {
"Malfunction": 1
},
"SCA": {
"Physical Probing": 1
}
},
"standard_id": {
"BSI": {
"AIS31": 4
},
"CC": {
"CCMB-2022-11-001": 1
},
"ISO": {
"ISO/IEC 15408-": 1,
"ISO/IEC 15408:2022": 1,
"ISO/IEC 18045:2022": 2
}
},
"symmetric_crypto": {
"DES": {
"DES": {
"DES": 1
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"report_metadata": {
"/CreationDate": "D:20260417170357+02\u002700\u0027",
"/Creator": "Acrobat PDFMaker 26 pour Word",
"/ModDate": "D:20260427114329+00\u002700\u0027",
"/Producer": "Docusign DMv10",
"pdf_file_size_bytes": 880405,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"mailto:[email protected]",
"https://cyber.gouv.fr/cybersecurity-act",
"https://www.cyber.gouv.fr/",
"http://www.cofrac.fr/",
"http://www.commoncriteriaportal.org/",
"mailto:[email protected]",
"https://www.ssi.gouv.fr/",
"https://www.st.com/en/secure-mcus/st33j2m0.html",
"https://www.st.com/content/st_com/en/about/security-and-privacy/psirt.html"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 18
},
"st_filename": "020b8c1d-bb6f-47d0-bb80-5e0d06a6331f_en",
"st_frontpage": null,
"st_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {},
"cc_claims": {
"O": {
"O.C": 3,
"O.RND": 4,
"O.TOE-": 2
},
"R": {
"R.O": 3
},
"T": {
"T.RND": 3
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP- 0084-2014": 9,
"BSI-CC-PP-0084-": 3,
"BSI-CC-PP-0084-2014": 68
}
},
"cc_sar": {
"ADV": {
"ADV_ARC": 2,
"ADV_ARC.1": 2,
"ADV_FSP": 4,
"ADV_FSP.5": 3,
"ADV_IMP": 1,
"ADV_IMP.2": 4,
"ADV_INT.3": 4,
"ADV_TDS.5": 4
},
"AGD": {
"AGD_OPE": 1,
"AGD_OPE.1": 1,
"AGD_PRE": 3,
"AGD_PRE.1": 1
},
"ALC": {
"ALC_CMC": 1,
"ALC_CMC.5": 4,
"ALC_CMS": 1,
"ALC_CMS.5": 1,
"ALC_DEL": 3,
"ALC_DEL.1": 1,
"ALC_DVS": 1,
"ALC_DVS.2": 5,
"ALC_FLR.2": 6,
"ALC_LCD.1": 1,
"ALC_TAT.3": 4
},
"ASE": {
"ASE_CCL": 7,
"ASE_CCL.1": 1,
"ASE_ECD": 4,
"ASE_ECD.1": 1,
"ASE_INT": 2,
"ASE_INT.1": 2,
"ASE_OBJ": 11,
"ASE_OBJ.2": 1,
"ASE_REQ": 31,
"ASE_REQ.1": 1,
"ASE_REQ.2": 1,
"ASE_SPD": 8,
"ASE_SPD.1": 1,
"ASE_TSS": 7,
"ASE_TSS.2": 6
},
"ATE": {
"ATE_COV": 3,
"ATE_COV.3": 4,
"ATE_DPT.3": 1,
"ATE_FUN.2": 4,
"ATE_IND.2": 1
},
"AVA": {
"AVA_VAN": 1,
"AVA_VAN.5": 5
}
},
"cc_security_level": {
"EAL": {
"EAL 5": 1,
"EAL 5 augmented": 1,
"EAL4": 1,
"EAL5": 14,
"EAL5 augmented": 1,
"EAL5+": 1
}
},
"cc_sfr": {
"FAU": {
"FAU_GEN.1": 8,
"FAU_SAR.1": 26,
"FAU_SAS": 1,
"FAU_SAS.1": 29
},
"FCS": {
"FCS_CKM.1": 2,
"FCS_CKM.4": 4,
"FCS_CKM.5": 1,
"FCS_CKM.6": 7,
"FCS_CKM.6.1": 1,
"FCS_COP.1": 18,
"FCS_RNG.1": 7
},
"FDP": {
"FDP_ACC.1": 23,
"FDP_ACC.2": 12,
"FDP_ACF": 1,
"FDP_ACF.1": 28,
"FDP_IFC.1": 17,
"FDP_ITC.1": 3,
"FDP_ITC.2": 3,
"FDP_ITT.1": 10,
"FDP_SDC.1": 9,
"FDP_SDI.2": 14,
"FDP_SMF.1": 2,
"FDP_SMR.1": 1,
"FDP_UCT.1": 16,
"FDP_UIT.1": 16
},
"FIA": {
"FIA_API.1": 7,
"FIA_UAU.1": 14,
"FIA_UID.1": 16
},
"FMT": {
"FMT_LIM.1": 32,
"FMT_LIM.2": 33,
"FMT_MSA.1": 26,
"FMT_MSA.3": 26,
"FMT_SMF.1": 21,
"FMT_SMR.1": 17
},
"FPT": {
"FPT_FLS.1": 23,
"FPT_ITT.1": 9,
"FPT_PHP.3": 11
},
"FRU": {
"FRU_FLT.2": 11
},
"FTP": {
"FTP_ITC.1": 27,
"FTP_TRP.1": 2
}
},
"certification_process": {
"OutOfScope": {
"ES) is in User NVM. 43 Note: The ES is not part of the TOE and is out of scope of the evaluation": 1,
"Security IC Embedded Software (ES) is in User NVM. 43 Note: The ES is not part of the TOE and is out of scope of the evaluation. 1.6.3 TOE documentation 44 The user guidance documentation, part of the TOE": 1,
"out of scope": 1
}
},
"cipher_mode": {
"CBC": {
"CBC": 8
},
"ECB": {
"ECB": 7
}
},
"cplc_data": {},
"crypto_engine": {
"NesCrypt": {
"NESCRYPT": 3,
"Nescrypt": 3
}
},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 2
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 1
},
"RNG": {
"RND": 7,
"RNG": 6
},
"TRNG": {
"TRNG": 2
}
},
"side_channel_analysis": {
"FI": {
"Malfunction": 13,
"malfunction": 2,
"physical tampering": 1
},
"SCA": {
"Leak-Inherent": 14,
"Physical Probing": 4,
"physical probing": 3,
"side channel": 2
},
"other": {
"JIL": 15
}
},
"standard_id": {
"BSI": {
"AIS31": 2
},
"CC": {
"CCMB-2017-04-002": 5,
"CCMB-2022-11-001": 2,
"CCMB-2022-11-002": 21,
"CCMB-2022-11-003": 2
},
"FIPS": {
"FIPS PUB 197": 3
},
"ISO": {
"ISO/IEC 14888": 2,
"ISO/IEC 7816-3": 1,
"ISO/IEC 9796": 1,
"ISO/IEC 9796-2": 1
},
"NIST": {
"NIST SP 800-38A": 2,
"NIST SP 800-67": 3,
"SP 800-38A": 2,
"SP 800-67": 1
},
"PKCS": {
"PKCS #1": 2
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 18,
"AES-128": 1,
"AES-192": 1,
"AES-256": 1
}
},
"DES": {
"3DES": {
"TDEA": 1,
"TDES": 6
},
"DES": {
"DES": 18
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"GD": {
"G+D": 1,
"Giesecke+Devrient": 1
},
"Infineon": {
"Infineon Technologies": 1
},
"Philips": {
"Philips": 1
},
"STMicroelectronics": {
"STMicroelectronics": 25
}
},
"vulnerability": {}
},
"st_metadata": {
"/Author": "samantha rigaudie",
"/CreationDate": "D:20251022145026Z",
"/Creator": "FrameMaker 17.0.3",
"/ModDate": "D:20251022145621+02\u002700\u0027",
"/Producer": "Adobe PDF Library 17.0",
"/Title": "SMD_ST33J2M0_ST_19_002_C05_0P.pdf",
"/Trapped": "/False",
"pdf_file_size_bytes": 2102386,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://www.st.com"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 84
}
},
"protection_profile_links": null,
"report_link": "https://certification.enisa.europa.eu/document/download/5a44fdcb-6174-4c74-9d92-ee6dfa60a18e_en?filename=EUCC-3090-2026-22-rapport.pdf",
"scheme": "FR",
"security_level": {
"_type": "Set",
"elements": [
"EAL5"
]
},
"st_link": "https://certification.enisa.europa.eu/document/download/020b8c1d-bb6f-47d0-bb80-5e0d06a6331f_en?filename=EUCC-3090-2026-22-cible.pdf",
"state": {
"_type": "sec_certs.sample.cc_eucc_common.InternalState",
"cert": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "4393fe30db5a9977be7406e0224fae3920f6c5682340b12af6e5cd1d84d78500",
"txt_hash": "24334d5cc1eaaa6da8e531dbd071a316d1be6e3c070206e55a01d8350ba84574"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "592b65d6b60b4f54e201fdaa9f17d6ab136820f45b7ec3b94824b090139c57be",
"txt_hash": "756fc6167fc9ac44c1b06956b20ba008de2e49612c690fa398c4980a576a5f25"
},
"st": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "4218cba25be3bc904846b9eaef5775cdc5e65f4dfbeb253891a7e82bd0b8ff55",
"txt_hash": "5c3021790a5b760dc3b88da4f9ef32283bdff67f03e210abda09fc00c5e88328"
}
},
"status": "active"
}