Data

The full and up-to-date dataset used on this site can be downloaded here. It is updated weekly and all the pages and data on this site are extracted from it. It is a JSON file as produced by the sec-certs fips command from the tool. Documentation for the tool, including a quick-start guide, can be found here.

The dataset was last successfully updated at 19:27 on 02.06.2025 using version 0.2.1.post1.dev34+g5f893fb of the sec-certs tool and it contains 5015 certificates.

Main dataset The main dataset is a JSON file with data on the certificates extracted from the certification artifacts (i.e. PDFs). It does not contain the files themselves.
Full datasset The full dataset contains the dataset mentioned above as well as the certification artifacts themselves (i.e. PDFs). It is a gzip-compressed tar archive. Download this if you want to do your own processing on top of the data provided by our tooling.
sec-certs is also a library! You can easily work with these datasets using our Python library. Check out the docs.

Data sources

We are getting information from the following data sources:

  • The NIST CMVP site which we scrape for a list of certified products. We also download and process the certificate and security policy PDFs. We run a caching proxy to minimize the load on the NIST CMVP site and disperse it over time by keeping the cache hot.
  • The NIST CMVP Modules In Process site which we scrape for a list of modules in the process of certification.
  • The NIST CMVP Implementations Under Test site which we scrape for a list of modules under test.